Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Scott_Paisley
Contributor

Searching logs via description field

Jump to solution

We enabled blocking traffic coming from known malicious IP addresses on our R77.30 gateways following sk103154

which says

  • To monitor the blocked IP addresses:
  • In SmartView Tracker, search for "SecureXL message: Quota violation".

That worked when the Tracker was R77, but in R80.20 when I search for that string I get zero results.

Anyone else got it working?

0 Kudos
1 Solution

Accepted Solutions
PhoneBoy
Admin
Admin

The Description field is not currently indexed thus you can't search on it. 

While not formally supported, you can still use SmartView Tracker in R80.20. See: https://community.checkpoint.com/t5/Logging-and-Reporting/Has-SmartView-Tracker-been-eliminated/m-p/...

View solution in original post

2 Replies
PhoneBoy
Admin
Admin

The Description field is not currently indexed thus you can't search on it. 

While not formally supported, you can still use SmartView Tracker in R80.20. See: https://community.checkpoint.com/t5/Logging-and-Reporting/Has-SmartView-Tracker-been-eliminated/m-p/...

View solution in original post

Scott_Paisley
Contributor

Although you can still use SmartView tracker, it still doesn't search that field.

I can see the log entry, but if I search for the contents of that field I get 0 results in SmartView tracker

0 Kudos