<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Logs migration from old to the new SMS server in Firewall &amp; Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-Security-Management/Logs-migration-from-old-to-the-new-SMS-server/m-p/247102#M62637</link>
    <description>&lt;P&gt;Hey&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/92531"&gt;@akurtasanov&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;What&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/21294"&gt;@G_W_Albrecht&lt;/a&gt;&amp;nbsp;said is exactly what you need to do. -l flag is logs without indexing and -x is with.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
    <pubDate>Wed, 23 Apr 2025 11:49:44 GMT</pubDate>
    <dc:creator>the_rock</dc:creator>
    <dc:date>2025-04-23T11:49:44Z</dc:date>
    <item>
      <title>Logs migration from old to the new SMS server</title>
      <link>https://community.checkpoint.com/t5/Firewall-Security-Management/Logs-migration-from-old-to-the-new-SMS-server/m-p/247092#M62634</link>
      <description>&lt;P&gt;Good day.&lt;/P&gt;&lt;P&gt;Simple question.&lt;/P&gt;&lt;P&gt;It is enough to simply copy one $FWDIR/log folder from old server to the new for log migration?&lt;/P&gt;&lt;P&gt;P.s. Servers are equal in GAIA version. I know about indexes limitation.&lt;/P&gt;</description>
      <pubDate>Wed, 23 Apr 2025 09:50:10 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-Security-Management/Logs-migration-from-old-to-the-new-SMS-server/m-p/247092#M62634</guid>
      <dc:creator>akurtasanov</dc:creator>
      <dc:date>2025-04-23T09:50:10Z</dc:date>
    </item>
    <item>
      <title>Re: Logs migration from old to the new SMS server</title>
      <link>https://community.checkpoint.com/t5/Firewall-Security-Management/Logs-migration-from-old-to-the-new-SMS-server/m-p/247096#M62635</link>
      <description>&lt;P&gt;This was discussed multiple times in the community. Please look here:&amp;nbsp;&lt;A href="https://community.checkpoint.com/t5/Management/SmartLog-only-look-back-14-days-how-to-reindex-90-days-back/m-p/23280" target="_blank" rel="noopener"&gt;https://community.checkpoint.com/t5/Management/SmartLog-only-look-back-14-days-how-to-reindex-90-days-back/m-p/23280&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 23 Apr 2025 10:42:45 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-Security-Management/Logs-migration-from-old-to-the-new-SMS-server/m-p/247096#M62635</guid>
      <dc:creator>_Val_</dc:creator>
      <dc:date>2025-04-23T10:42:45Z</dc:date>
    </item>
    <item>
      <title>Re: Logs migration from old to the new SMS server</title>
      <link>https://community.checkpoint.com/t5/Firewall-Security-Management/Logs-migration-from-old-to-the-new-SMS-server/m-p/247097#M62636</link>
      <description>&lt;P&gt;Just use migrate_server to migrate SMS including logs:&lt;/P&gt;
&lt;P&gt;&lt;CODE&gt;./migrate_server -v &lt;SPAN class="mc-variable Book_Variables_Common.tp_cpversion variable"&gt;R8xxxx&lt;/SPAN&gt; -l /&amp;lt;&lt;EM&gt;Full Path&lt;/EM&gt;&amp;gt;/&amp;lt;&lt;EM&gt;Name of Exported File&lt;/EM&gt;&amp;gt;.tgz&lt;/CODE&gt;&lt;/P&gt;
&lt;P&gt;See &lt;A href="https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_SecurityManagement_AdminGuide/Content/Topics-SECMG/CLI/migrate_server.htm" target="_blank"&gt;https://sc1.checkpoint.com/documents/R81.20/WebAdminGuides/EN/CP_R81.20_SecurityManagement_AdminGuide/Content/Topics-SECMG/CLI/migrate_server.htm&lt;/A&gt;&lt;CODE&gt;&lt;/CODE&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 23 Apr 2025 10:45:38 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-Security-Management/Logs-migration-from-old-to-the-new-SMS-server/m-p/247097#M62636</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2025-04-23T10:45:38Z</dc:date>
    </item>
    <item>
      <title>Re: Logs migration from old to the new SMS server</title>
      <link>https://community.checkpoint.com/t5/Firewall-Security-Management/Logs-migration-from-old-to-the-new-SMS-server/m-p/247102#M62637</link>
      <description>&lt;P&gt;Hey&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/92531"&gt;@akurtasanov&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;What&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/21294"&gt;@G_W_Albrecht&lt;/a&gt;&amp;nbsp;said is exactly what you need to do. -l flag is logs without indexing and -x is with.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Wed, 23 Apr 2025 11:49:44 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-Security-Management/Logs-migration-from-old-to-the-new-SMS-server/m-p/247102#M62637</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-04-23T11:49:44Z</dc:date>
    </item>
    <item>
      <title>Re: Logs migration from old to the new SMS server</title>
      <link>https://community.checkpoint.com/t5/Firewall-Security-Management/Logs-migration-from-old-to-the-new-SMS-server/m-p/247112#M62638</link>
      <description>&lt;P&gt;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/92531"&gt;@akurtasanov&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;With x it's more recommended. No indexes migrated = need to open log files to search them. Or re-indexing.&lt;/P&gt;</description>
      <pubDate>Wed, 23 Apr 2025 13:00:28 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-Security-Management/Logs-migration-from-old-to-the-new-SMS-server/m-p/247112#M62638</guid>
      <dc:creator>Amir_Senn</dc:creator>
      <dc:date>2025-04-23T13:00:28Z</dc:date>
    </item>
    <item>
      <title>Re: Logs migration from old to the new SMS server</title>
      <link>https://community.checkpoint.com/t5/Firewall-Security-Management/Logs-migration-from-old-to-the-new-SMS-server/m-p/247115#M62639</link>
      <description>&lt;P&gt;Good to know!&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Wed, 23 Apr 2025 13:14:37 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-Security-Management/Logs-migration-from-old-to-the-new-SMS-server/m-p/247115#M62639</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-04-23T13:14:37Z</dc:date>
    </item>
    <item>
      <title>Re: Logs migration from old to the new SMS server</title>
      <link>https://community.checkpoint.com/t5/Firewall-Security-Management/Logs-migration-from-old-to-the-new-SMS-server/m-p/247177#M62640</link>
      <description>&lt;P&gt;There is one problem.&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Not enough free space for full migration.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;lv_log total:800 used:627&lt;BR /&gt;&lt;BR /&gt;Will be enough to create fully identical copy of log folder with, like this, command?&lt;BR /&gt;rsync -arvP /opt/CPsuite-R81.20/fw/log/ user@host:/opt/CPsuite-R81.20/fw/log/ --delete&lt;/P&gt;</description>
      <pubDate>Thu, 24 Apr 2025 04:40:40 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-Security-Management/Logs-migration-from-old-to-the-new-SMS-server/m-p/247177#M62640</guid>
      <dc:creator>akurtasanov</dc:creator>
      <dc:date>2025-04-24T04:40:40Z</dc:date>
    </item>
    <item>
      <title>Re: Logs migration from old to the new SMS server</title>
      <link>https://community.checkpoint.com/t5/Firewall-Security-Management/Logs-migration-from-old-to-the-new-SMS-server/m-p/247180#M62641</link>
      <description>&lt;P&gt;Try delete some files from /var/log. Example...to check files bigger than 500M -&amp;gt; from expert mode, run -&amp;gt; find /var/log -size +500M&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Thu, 24 Apr 2025 03:18:36 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-Security-Management/Logs-migration-from-old-to-the-new-SMS-server/m-p/247180#M62641</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2025-04-24T03:18:36Z</dc:date>
    </item>
    <item>
      <title>Re: Logs migration from old to the new SMS server</title>
      <link>https://community.checkpoint.com/t5/Firewall-Security-Management/Logs-migration-from-old-to-the-new-SMS-server/m-p/247183#M62642</link>
      <description>&lt;P&gt;There are not so many files. I assume around 10-15 gigs. Not enough.&lt;BR /&gt;I would like to avoid the process of increasing free space, but if creating an identical folder on both servers is not enough, then it seems worth going this route.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 24 Apr 2025 04:53:58 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-Security-Management/Logs-migration-from-old-to-the-new-SMS-server/m-p/247183#M62642</guid>
      <dc:creator>akurtasanov</dc:creator>
      <dc:date>2025-04-24T04:53:58Z</dc:date>
    </item>
    <item>
      <title>Re: Logs migration from old to the new SMS server</title>
      <link>https://community.checkpoint.com/t5/Firewall-Security-Management/Logs-migration-from-old-to-the-new-SMS-server/m-p/247199#M62643</link>
      <description>&lt;P&gt;A few points:&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;You can set logging policy on your log server/ MGMT server. This will do maintenance on your logging by deleting older logs and indexes keeping only the amount of logs/indexes you need (daily maintenance performed on midnight) or by keeping at least X GB of free space on your logging partition (immediately).&lt;/LI&gt;
&lt;LI&gt;Moving the logs manually will not let you search for logs out of the box. Indexer will only index logs files closed on the last 24 hours by default, so you will only have 24 hours of logs in index mode, the rest will be available by manually opening a log file (you can do it in the logs view) or be re-indexing them on the new server.&lt;/LI&gt;
&lt;/UL&gt;</description>
      <pubDate>Thu, 24 Apr 2025 07:34:45 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-Security-Management/Logs-migration-from-old-to-the-new-SMS-server/m-p/247199#M62643</guid>
      <dc:creator>Amir_Senn</dc:creator>
      <dc:date>2025-04-24T07:34:45Z</dc:date>
    </item>
  </channel>
</rss>

