- Products
- Learn
- Local User Groups
- Partners
- More
Stop Babysitting Rules.
Go Agentic
Step Into the Future of
AI-Powered Cyber Security
The State of Ransomware Q1 2026
Key Trends and Their Impact
AI Security Masters E8:
Claude Mythos: New Era in Cyber Security
Blueprint Architecture for Securing
The AI Factory & AI Data Center
Call For Papers
Your Expertise. Our Stage
CheckMates Go:
CheckMates Fest
Hi,
I am trying to create an user account who will only have read/write/deletion access to /var/log/opt/ this directory and it's associated files, directories via SSH/WINSCP. This is for manage space alerts in firewalls. However, I am unable to give correct permission thus user cannot go beyond past /var/log/opt/ location. Hence reaching out here if anyone can help on this.
Thanks!
Such file system access restrictions are not supported as far as I know.
Such file system access restrictions are not supported as far as I know.
Second that ⬆️
So, how do i approach this? I wanted to give an user to winscp access to firewall to delete old log files when any space alert issue comes.
In other words, you want a non-admin user with the ability to delete files? This will not work. Why not use one of the OS level admin accounts?
Or a cronjob.
You can also set a management server to delete old logs when lv_log has under X gigabytes of free space.
Strictly, it should be possible to grant a specific user RWX access to everything under a directory using extended filesystem ACLs. New files would be created with the default permissions from the umask, though, so the user wouldn't be able to remove most logs, so a cronjob or similar would still be needed to apply the ACL. May as well have the cronjob handle the cleanup directly.
is there any article or document that I can refer to set this up?
Extended ACLs are a standard Linux thing (getfacl / setfacl).
However, we do not include these binaries in Gaia OS.
I could have sworn I was just working with these on a Gaia system, but sure enough, they're not present. Scratch that idea!
That leaves the log cleanup options configured in SmartConsole (cleans up firewall traffic logs, but not stuff like /var/log/messages), or a cronjob.
How to setup in Smart console to cleanup logs at /var/log/opt/CPsuite-<RX.x>/fw1/log? Which usually has that traffic logs. Any article or document you have? Or how to setup cronjob for this as you mentioned earlier?
Use SmartConsole to connect to your management. Open the object for the server you want to adjust. Go to Logs > Storage. Set the "When disk space is below _____, start deleting old files." option. When you're done configuring it, Menu button > Install database... and install it on at least the one you modified.
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 23 | |
| 19 | |
| 9 | |
| 9 | |
| 8 | |
| 7 | |
| 7 | |
| 6 | |
| 4 | |
| 4 |
Fri 29 May 2026 @ 09:00 AM (EDT)
Caracas: Executive Breakfast: Innovación en Ciberseguridad – IA y Threat IntelligenceTue 02 Jun 2026 @ 06:00 PM (IDT)
Under the Hood | Check Point SASE: Identity Integration & Access Policy Design Best PracticesThu 04 Jun 2026 @ 02:00 PM (CEST)
Deep Dive Webinar: New CloudGuard GWLB Deployment Without NAT Gateways - EuropeTue 02 Jun 2026 @ 06:00 PM (IDT)
Under the Hood | Check Point SASE: Identity Integration & Access Policy Design Best PracticesThu 04 Jun 2026 @ 02:00 PM (CEST)
Deep Dive Webinar: New CloudGuard GWLB Deployment Without NAT Gateways - EuropeThu 04 Jun 2026 @ 07:00 PM (IDT)
Deep Dive Webinar: New CloudGuard GWLB Deployment Without NAT Gateways - AmericaFri 12 Jun 2026 @ 10:00 AM (CEST)
CheckMates Live Netherlands - Sessie 47: Continuous Threat Exposure ManagementThu 18 Jun 2026 @ 10:00 AM (CEST)
The Cloud Architects Series: Check Point WAF - The Next Generation of AI powered protectionFri 29 May 2026 @ 09:00 AM (EDT)
Caracas: Executive Breakfast: Innovación en Ciberseguridad – IA y Threat IntelligenceAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY