- Products
- Learn
- Local User Groups
- Partners
- More
MVP 2026: Submissions
Are Now Open!
What's New in R82.10?
10 December @ 5pm CET / 11am ET
Announcing Quantum R82.10!
Learn MoreOverlap in Security Validation
Help us to understand your needs better
CheckMates Go:
Maestro Madness
Hello experts,
I have many firewalls connected to SMS which manages all firewalls.
All the logs of the Gateways are being sent to and stored on SMS.
Can someone write a way how to see specific log partitions coming from each firewall?
it shall be in /var/log/opt/.... but I can only find all partitions mixed together
Let´s say I want to delete all logs coming from one specific gateway. Is it possible?
Thank you,
Marko
Thats very good question actually! I checked my lab mgmt server and if you navigate to $FWDIR/log dir and then do command ls -lh *.log, you get bunch of files, BUT, none of them have gw name, just date and then .log at the end, as per below.
Andy
-rw-rw---- 1 admin root 20M Aug 29 00:00 2023-08-29_000000.log
-rw-rw---- 1 admin root 33M Aug 30 00:00 2023-08-30_000000.log
-rw-rw---- 1 admin root 25M Aug 31 00:00 2023-08-31_000000.log
-rw-rw---- 1 admin root 36M Sep 1 00:00 2023-09-01_000000.log
-rw-rw---- 1 admin root 28M Sep 2 00:00 2023-09-02_000000.log
-rw-rw---- 1 admin root 19M Sep 3 00:00 2023-09-03_000000.log
-rw-rw---- 1 admin root 19M Sep 4 00:00 2023-09-04_000000.log
-rw-rw---- 1 admin root 21M Sep 5 00:00 2023-09-05_000000.log
-rw-rw---- 1 admin root 23M Sep 6 00:00 2023-09-06_000000.log
-rw-rw---- 1 admin root 33M Sep 7 00:00 2023-09-07_000000.log
-rw-rw---- 1 admin root 26M Sep 8 00:00 2023-09-08_000000.log
-rw-rw---- 1 admin root 7.7M Sep 8 09:26 fw.log
So I guess it is not possible to see specific partitions?
Which logs shall I delete not to delete any system relevant logs ?
All logs older than 1 year? Or maybe logs from different GAIA Versions?
What is recommended?
thank you,
Marko
Really depends on the business/audit purposes. If you dont need logs older than 1 year, I think they can safely be deleted.
Andy
Thank you rock :),
I was thinking there may be preferred way to delete files above certain size with something like:
find /var/log -type f -size +1000000 -exec ls -lh {} \; 2> /dev/null | awk '{ print $NF ": " $5 }' | sort -nk 2
You can, there are few ways : - )
Hello guys,
is there a way to connect via some sftp or ftp client (like is winSCP) to mgmt server (which is in my case log server) and delete logs or there is only one way through command line and expert mode. I asked that because I am not the best with commands in expert mode:)
You can connect via WinSCP but you'll have to log in with a user configured to use the /bin/bash shell.
Oh. Yes! Thank you very much...
Leaderboard
Epsum factorial non deposit quid pro quo hic escorol.
| User | Count |
|---|---|
| 21 | |
| 13 | |
| 12 | |
| 7 | |
| 6 | |
| 5 | |
| 4 | |
| 4 | |
| 4 | |
| 4 |
Fri 12 Dec 2025 @ 10:00 AM (CET)
Check Mates Live Netherlands: #41 AI & Multi Context ProtocolTue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!Fri 12 Dec 2025 @ 10:00 AM (CET)
Check Mates Live Netherlands: #41 AI & Multi Context ProtocolTue 16 Dec 2025 @ 05:00 PM (CET)
Under the Hood: CloudGuard Network Security for Oracle Cloud - Config and Autoscaling!Thu 18 Dec 2025 @ 10:00 AM (CET)
Cloud Architect Series - Building a Hybrid Mesh Security Strategy across cloudsAbout CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY