Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
m_SEA
New Contributor

fortianalyzer with v5.0.7 firmware

what is root cause of automatically deleting elog file on fortianalyzer !?!?!

 

1 REPLY 1
scao_FTNT
Staff
Staff

you mean for the FAZ system local log elog file or its received FGT elog file

 

for system local log, there has a disk usage check and default is 80%, if over 80%, then it starts to delete old elog file and only keep the current active one

 

get system locallog disk setting status              : enable ... diskfull            : overwrite log-disk-full-percentage: 80

 

for device log file, after device configured quota reached, FAZ will start to delete oldest raw log files if device configured for overwrite

 

Thanks

 

Simon

Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors