Hello I followed the link below and got it to work, my question is how can I see more results? I was able to expand the results to 500, is there a way to make it more than 500?
http://cookbook.fortinet.com/logging-dns-domain-lookups/
Thanks,
David
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Hello,
I believe you already added the dataset to a chart before using it on the report.
So you can edit the chart used by this report and set "Show Top" to "0" to show all results.
The device set by default to show 10,000 row per report:
# config system report setting
# get
max-table-rows : 10000 report-priority : low week-start : sun
Regards,
Tried the above still shows only 500 results in the report.
last result below.
500 custom: DNS QUERY, dns_query=forum.fortinet.com; 14
It works for me on FortiAnalyzer v5.2.2.
Not sure about FortiAnalyzer v4.3, I think You need to edit the chart and input the value under the section "Only Show First" in the Data Bindings. You may try "0" or something like 50000.
Hello I am using 5.2.5 and I tried the change in the Chart section and that fixed it thanks.
Might be worth adding that to the Cookbook for others.
D
Is there a way to add source IP to DNS Query dataset?
Below is from the cookbook entry
select msg, sum(totalnum) as totalnum from ###(select ipstr(srcip), msg, count(*) as totalnum from $log where $filter-exclude-var group by srcip, msg order by totalnum desc)### t where $filter-var-only and msg is not null group by msg order by totalnum desc
Thanks
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1733 | |
1106 | |
752 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.