hi,
There is a newly installed vs on a vsx cluster, that we cannot open or download the packet capture file from the log entry. Forensics is enabled in tracking, the files are generated, but when clicking on the cap file link in the log entry in smartconsole, we only get
"failed at getting the incident file from the gateway"
$FWDIR/log/forensics folder is empty, on the vs, and vs0, nothing on the log server either.
Is there a timelimit for how long these files are accessible, and can this then be adjusted? Or is this a bug?
The vsx cluster is running R80.30.