Hello
As the title explain it, I have traffig logs that I can display in the log browser, but I can't see them in the logView. I have already tried to regenerate the database and already try to reindex it.
But it doesn't work.
Any idea ?
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
what is the FAZ version and FGT version?
can you provide "diag fortilogd lograte" and "diagnose sql status sqlplugind"
Thanks
Simon
Absolutely;
FortiAnalyzer-1000C # diag fortilogd lograte logs/sec: 180.6, logs/30sec: 198.6, logs/60sec: 203.7 FortiAnalyzer-1000C # diagnose sql status sqlplugind PID: 455, now: 1466779530, uptime: 3121255 Thread registered: 2 Log insert speed: logs/5sec: 234.2, logs/60sec: 218.5 Overall: 1138.1 (3552317581) Log received: logs=3552317581 bat=31790989 avg-bat-sz=112 ack=31792468 ack-drop=0 ack-err=0 bat-recv=31792468 misc-recv=28516 writers=1 indexers=1 tri-force=0 logtab: new-dbtbl=33736 orphan=3 zombie=0 master-tbl:new=14823/free=6611 child-tbl:new=18913/free=6617 logtab: master-tbl create_err=0, child-tbl create-err=0 tr-err=0, new-retry=3 commit-locate-err: adom=0 master-tbl=0 child-tbl=0 trim: req=103 drop-tbl=6611 total-sz=568417(MB) chkdisk=98162 diskfull=0 mdevtree=14683 trim-alerts: trim=166 total=6694, flush=1 total=0 sqldata: batch=31792468 insert=0 update=0 alert=6875 al-log=21640 al-flush=1 dup_batch=0 invalid_sql=1429 tasklist-tri: add=3476486 renew=60122600 run=3476475 save=17109672 tasklist-reg: add=58764 renew=735229 run=58755 save=6220 index-task: add=18221 renew=376463 drop=0 done=18217 task-stats: new=3535250 free=3535230 recv-conn: accept=1 close=0 close-conn: idle=0 threshold=0 all_threshold=0
Oups, I forget the version:
FAZ: 5.2.5
FGT: 5.2.5
But I have anothers FGT with 5.2.6, and FGT 5.0.X with exactly the same symptoms. The only logs concerned are the traffic logs. I don't have the probleme with event.log. Furthermore, I can see the top source or destination in the fortiview.
Thx for your help.
I found it. I just have disabled the filter column then reenable it. I assume there was an active filter that doesn't match with any traffic. I had checked this manually, but I should have let one.
This is disapointing, but I am happy to have my functionality back.
Regards
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1662 | |
1077 | |
752 | |
443 | |
220 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.