Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
tchich
New Contributor

Traffic log not found in logview but found in log browser

Hello

 

As the title explain it, I have traffig logs that I can display in the log browser, but I can't see them in the logView. I have already tried to regenerate the database and already try to reindex it.

But it doesn't work.

Any idea ?

 

 

 

4 REPLIES 4
scao_FTNT
Staff
Staff

what is the FAZ version and FGT version?

 

can you provide "diag fortilogd lograte" and "diagnose sql status sqlplugind"

 

Thanks

 

Simon

tchich

Absolutely;

 

FortiAnalyzer-1000C # diag fortilogd lograte logs/sec: 180.6, logs/30sec: 198.6, logs/60sec: 203.7 FortiAnalyzer-1000C # diagnose sql status sqlplugind PID: 455, now: 1466779530, uptime: 3121255 Thread registered: 2 Log insert speed: logs/5sec: 234.2, logs/60sec: 218.5  Overall: 1138.1 (3552317581) Log received: logs=3552317581 bat=31790989 avg-bat-sz=112 ack=31792468 ack-drop=0 ack-err=0 bat-recv=31792468 misc-recv=28516 writers=1 indexers=1 tri-force=0 logtab: new-dbtbl=33736 orphan=3 zombie=0 master-tbl:new=14823/free=6611 child-tbl:new=18913/free=6617 logtab: master-tbl create_err=0, child-tbl create-err=0 tr-err=0, new-retry=3 commit-locate-err: adom=0 master-tbl=0 child-tbl=0 trim: req=103 drop-tbl=6611 total-sz=568417(MB) chkdisk=98162 diskfull=0 mdevtree=14683 trim-alerts: trim=166 total=6694, flush=1 total=0 sqldata: batch=31792468 insert=0 update=0 alert=6875 al-log=21640 al-flush=1          dup_batch=0 invalid_sql=1429 tasklist-tri: add=3476486 renew=60122600 run=3476475 save=17109672 tasklist-reg: add=58764 renew=735229 run=58755 save=6220 index-task: add=18221 renew=376463 drop=0 done=18217 task-stats: new=3535250 free=3535230 recv-conn: accept=1 close=0 close-conn: idle=0 threshold=0 all_threshold=0

tchich
New Contributor

Oups, I forget the version:

FAZ: 5.2.5

FGT: 5.2.5

But I have anothers FGT with 5.2.6, and FGT 5.0.X with exactly the same symptoms. The only logs concerned are the traffic logs. I don't have the probleme with event.log. Furthermore, I can see the top source or destination in the fortiview.

 

Thx for your help.

 

  
tchich
New Contributor

I found it. I just have disabled the filter column then reenable it. I assume there was an active filter that doesn't match with any traffic. I had checked this manually, but I should have let one.

This is disapointing, but I am happy to have my functionality back.

 

Regards

Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors