Is it possible to pull the logs back ( From ftp,SCP or Syslog servers)to PaloAlto device for further process?

Reply
Highlighted
L4 Transporter

Is it possible to pull the logs back ( From ftp,SCP or Syslog servers)to PaloAlto device for further process?

Hi All,

Is there any way to pull the logs back ( From ftp,SCP or Syslog servers)to PaloAlto device for further process?

Regards,

Gururaj

Highlighted
L6 Presenter

I know that you can export logdb and after sometime you can import logdb so that you can take whatever you need.

Highlighted
L4 Transporter

Hi,

You can only import an entire database not selective logs.so you can export the whole db, then re import it.


Thanks,


Syed R Hasnain


Highlighted
L4 Transporter

Hello Gururaj,

The answer is no. We cannot take data from other devices and put it on the PAN as the formatting / data / and file types would not synchronize as what is expected by the PAN.

If the log database exported out of PAN device earlier and if that file is there then yes we can load it back to the device. ( Remember that once logdb is imported then only that data shows up and any other data on device is removed. It does not merge the old and new data )

We only have option to,

"scp import logdb <options>"

There is no other option to load log data to the device.

Thanks

Highlighted
L4 Transporter

Hi All,..

Is there any way to schedule exporting whole logdb to SCP server? As in the GUI it shows different logs type as shown below,.

If we have scheduled to export url logs to SCP server,.then is it not possible to import that particular logs back to PaloAlto device a for analyzing?

Regards,

Gururaj

Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the Live Community as a whole!

The Live Community thanks you for your participation!