User guide

ManageEngine Firewall Analyzer :: User Guide
163
Zoho Corp.
The archiving options available are described below:
Attribute
Default Value
Description
File Creation
Interval
12 hours
The time interval after which a log file
is created for each host from which
event logs are collected.
Zip
Compression
Interval
24 hours
The time interval after which log files
created for each host are zipped to
save disk space.
Start Initial
Compression
at
_ Hrs _ Mins
The time at which log files created for
each host are zipped for the first time
to save disk space.
Retain logs
for
Forever
You can retain the archive log data as
per the compliance audit requirement
or internal audit policy requirement.
The options available are: Forever, 1
Year, 6 Months, 3 Months, 1 Month and
1 Week. Select the option that suits
your requirement.
Archive File
Encryption
Disable
Firewall Analyzer comes with a feature
to encrypt the archive data. To enable
encryption of archive data, select the
Enable radio button and to disable,
select Disable radio button.
Time
Stamping
Disable
Firewall Analyzer comes with a feature
to timestamp the archive data. To
enable time stamping of archive data,
select the Enable radio button and to
disable, select Disable radio button.
Change Raw
Logs Archive
Location
<Firewall Analyzer
Home>\server\default\archive
directory
By default the Archive Location for the
event logs and syslogs in Firewall
Analyzer is <Firewall Analyzer
Home>\server\default\archive
directory, you can change this location
by clicking the Edit link and providing
the location as per your requirement.
Change Raw
Logs
Indexing
Location
<Firewall Analyzer
Home>\server\default\indexes
directory
By default the Index Location for the
event logs and syslogs in Firewall
Analyzer is <Firewall Analyzer
Home>\server\default\indexes
directory, you can change this location
by clicking the Edit link and providing
the location as per your requirement.
You can create instant zip file of the existing log files waiting to be archived. Click Zip
Now to create a zipped file with the currently available log files.
Click Save to save the archiving options, if you have changed them. Click Close to close
the Archive Settings box.
Note: The currently active log files (i.e., logs not yet archived) will be stored in the
<Firewall Analyzer Home>\server\default\archive\localhost\hot directory. The archived
log files (i.e., logs archived as according to the archive settings) will be stored in the
<Firewall Analyzer Home>\server\default\archive\localhost\cold directory. The archived
log files loaded into database for analysis will be stored in the Warm directory. The log
files will be stored in the <Firewall Analyzer
Home>\server\default\archive\localhost\warm directory for 1 day and after that the log
files will be purged.