Firewall Analyzer - Archived Files - FAQ

1. Where to check current day raw logs?

By default, the current active log files (i.e., logs not yet archived) will be stored in the <Firewall Analyzer Home>/server/defaul/archive/<Firewall Name/Host Name/IP address>/hot directory.

If you have changed the default location, follow below procedure to know the path.

  1. Click on Archive Settings.
  2. You can see the raw log file location in Change Raw Logs Archive Location.
  3. Go to folder which is named as <Firewall Name/Host Name/IP address of firewall>\hot folder, in which you will find the current day raw logs.

2. Where to check archived raw logs?

The archived log files (i.e., logs archived as according to the archive settings) will be stored in the <Firewall Analyzer Home>/server/default/archive/<Firewall Name/Host Name/IP address>/cold directory.

If you have changed the default location, follow below procedure to know the path.

  1. Click on Archive Settings.
  2. You can see the raw log archive location in Change Raw Logs Archive Location.
  3. Go to folder which is named as <Firewall Name/Host Name/IP address of firewall>\cold folder, in which you will find the archived raw logs.

3. What is the purpose of warm folder under archive location?

The archived log files loaded into database for analysis will be stored in the Warm directory. The log files will be stored in the <Firewall Analyzer Home>/server/default/archive/<Firewall Name/IP address>/warm directory for one day and after that the log files will be purged.

 

 

A single platter for comprehensive Network Security Device Management