Generate Traffic Report on PA Firewall 7 Months Ago?

Reply
L2 Linker

Generate Traffic Report on PA Firewall 7 Months Ago?

Hi All,

Tried generating traffic report from month of May. But, Under Manage Custom Reports > Run now "Result was No Matching Records"

 

Report Setting are:

 

Database: Traffic Log

Time Frame: May1-31

Sortby: Top 500

Group by: 25 Groups

Selected Columns: Destination zOne

 

Do you think we can still see those logs?

For PA Admin. How long would our PA device store logs?

 

thanks

Community Team Member

Hi @searching1,

 

That depends on your logging rate vs capacity and can vary quite a bit.  At high traffic rates your FW will only hold a couple of hours/days/weeks of logs.

 

Change the direction of the logs to see the oldest traffic log on your device using the drop down menu at the bottom right :

 

2016-12-01_10-25-19.png

 

Alternatively you can use the CLI command 'show log traffic direction equal forward' to check for your oldest log on the device.

 

If you want to store data for longer times then I'd recommend using a log-collector or syslog server.

 

Cheers,

-Kim.

L5 Sessionator

"show system logdb-quota" will show you retention period for every log.

Cyber Elite

As others have stated it all depends on how much space you've allocated for logging data. Depening on our traffic flow on our main unit I can have 1-2 days of logging, or I can get just a few hours of logs depending on the amount of traffic flowing through. 

Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!