Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Terri_Hawkins
Collaborator

Search Multiple Archived Logs

Hi all! I have an R81 environment with a separate log server. I am able to keep 30 days of logs indexed, however, sometimes we need to search for traffic from before that time frame. I keep one year of logs on the server but have only found a way to search through them one at a time.  Is there a way to search multiple older logs or to force an archive one to reindex?  If I could reindex a certain time frame I could then search those using normal queries right? 

I found one article on here (https://community.checkpoint.com/t5/Management/Searching-Multiple-log-files-by-using-filter/m-p/1431...) but it sounds like the solution for them was to index more days back, and another article never had a response to additional questioning.

Any help is appreciated.

 

0 Kudos
0 Replies

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events