<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: logs on PA-2050 in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/logs-on-pa-2050/m-p/19759#M14414</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Should I safely ignore it? Does it impact with the firewall operations?&lt;/P&gt;&lt;P&gt;Regards.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Walter&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 20 Oct 2011 14:36:53 GMT</pubDate>
    <dc:creator>paloalto_exn</dc:creator>
    <dc:date>2011-10-20T14:36:53Z</dc:date>
    <item>
      <title>logs on PA-2050</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/logs-on-pa-2050/m-p/19757#M14412</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello everyone ,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have recently implement pa-2050 at a customer premises. Nine days after the implementation each time when login on the web interface a system alarm just popup saying '' Database traffic exceeds percentage limited ''&amp;nbsp; . Have a question , with the default quota for the traffic log how many days pa device can keep the logs?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please find attached screenshot of the system alarm!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;B.P&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 19 Oct 2011 07:04:09 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/logs-on-pa-2050/m-p/19757#M14412</guid>
      <dc:creator>bryanpascal</dc:creator>
      <dc:date>2011-10-19T07:04:09Z</dc:date>
    </item>
    <item>
      <title>Re: logs on PA-2050</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/logs-on-pa-2050/m-p/19758#M14413</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;There is a 160gb hard drive on the PA-2050. The number of days would depend on how much traffic is passing through the box and the size of the logs.&amp;nbsp; The logs fill the disk and when nearly full, the PAN deletes the older logs. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;These alerts are associated with the default Disk Quota settings/thresholds set (Under Device Tab-&amp;gt;'Edit Session Management'): &lt;/P&gt;&lt;P&gt; &lt;BR /&gt;In a nutshell:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;- The Traffic Disk Quota is set @ 38.123 GB&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;- The Alarm Threshold is set @ 90% of 38.123GB, which = 34.3107GB (MB equivalent being 39037MB)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;- The Traffic DB Disk allocates 38.9GB for Logs &amp;amp; Index, which (if fully utilized) exceeds the 90% threshold associated with the Disk Quota @ 38.123GB. (Though this actual # fluctuates following log purges)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;there is a&amp;nbsp; bug fix in the works regarding this particular alert/threshold comparison which should be available in upcoming release&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 19 Oct 2011 15:26:53 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/logs-on-pa-2050/m-p/19758#M14413</guid>
      <dc:creator>schiang1</dc:creator>
      <dc:date>2011-10-19T15:26:53Z</dc:date>
    </item>
    <item>
      <title>Re: logs on PA-2050</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/logs-on-pa-2050/m-p/19759#M14414</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Should I safely ignore it? Does it impact with the firewall operations?&lt;/P&gt;&lt;P&gt;Regards.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Walter&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 20 Oct 2011 14:36:53 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/logs-on-pa-2050/m-p/19759#M14414</guid>
      <dc:creator>paloalto_exn</dc:creator>
      <dc:date>2011-10-20T14:36:53Z</dc:date>
    </item>
    <item>
      <title>Re: logs on PA-2050</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/logs-on-pa-2050/m-p/19760#M14415</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;That's fine, and we rotate the log automatically.&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Jones&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 23 Oct 2011 06:48:17 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/logs-on-pa-2050/m-p/19760#M14415</guid>
      <dc:creator>jleung</dc:creator>
      <dc:date>2011-10-23T06:48:17Z</dc:date>
    </item>
    <item>
      <title>Re: logs on PA-2050</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/logs-on-pa-2050/m-p/19761#M14416</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Could it be that this bug is still present in v5.0.5? As we're logging to Panorama anyway, we don't really care about the utilization of the logs on the boxes. However, it's frustrating when you login on the Web UI and you have to check every single alarm to ack it. At least a select all button would be fine...&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 17 Aug 2013 16:55:18 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/logs-on-pa-2050/m-p/19761#M14416</guid>
      <dc:creator>oschuler</dc:creator>
      <dc:date>2013-08-17T16:55:18Z</dc:date>
    </item>
  </channel>
</rss>

