- CheckMates
- :
- Products
- :
- Quantum
- :
- Management
- :
- Trouble with Generating over 30 days' Checkup Repo...
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page
Are you a member of CheckMates?
×- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Trouble with Generating over 30 days' Checkup Report in Large Environment
Respected Community Experts
Hi. I have met some trouble in a recent Checkup event. In customer's environment, the log files size is near 1-2GB a day, the duration of Checkup is over 2 months, so we need a Checkup Report of 60 days. But we find that it is impossible to generate the report, because all data in the preview window shows "query failed" after a short time. Even that, when trying export the report by using a scheduled task, it shows "failed" a few minutes later.
The deployment method is Distributed (One 23800 gateway to receive monitor traffic, one VM SmartCenter for management and Logging). And VM SmartCenter has 24 cores, 24GB memory (The usage of the system resource is not high in usual as we observed, and disk space usage is about only 25%). The activated blades are Firewall (no track action), IPS, Anti-Bot, Anti-virus, Threat Emulation.
Has anyone met similar situation like this?
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
But setup was quite different - separate SmartEvent VM server and 10-15 GB logs per day (all FW rules are logged and all other blades also).
Enlarging the resources of VM from 4 ->8 cpu cores and 8 -> 16GB RAM solved the problem.
Suggestion : try with a separate SmartEvent server on a VM
