User guide
ManageEngine Firewall Analyzer :: User Guide 
163 
Zoho Corp. 
The archiving options available are described below: 
Attribute 
Default Value 
Description 
File Creation 
Interval 
12 hours 
The time interval after which a log file 
is created for each host from which 
event logs are collected. 
Zip 
Compression 
Interval 
24 hours 
The time interval after which log files 
created for each host are zipped to 
save disk space. 
Start Initial 
Compression 
at 
_ Hrs _ Mins  
The time at which log files created for 
each host are zipped for the first time 
to save disk space. 
Retain logs 
for  
Forever 
You can retain the archive log data as 
per the compliance audit requirement 
or internal audit policy requirement. 
The options available are: Forever, 1 
Year, 6 Months, 3 Months, 1 Month and 
1 Week. Select the option that suits 
your requirement.  
Archive File 
Encryption  
Disable 
Firewall Analyzer comes with a feature 
to encrypt the archive data. To enable 
encryption of archive data, select the 
Enable radio button and to disable, 
select Disable radio button.  
Time 
Stamping 
Disable 
Firewall Analyzer comes with a feature 
to timestamp the archive data. To 
enable time stamping of archive data, 
select the Enable radio button and to 
disable, select Disable radio button. 
Change Raw 
Logs Archive 
Location 
<Firewall Analyzer 
Home>\server\default\archive 
directory 
By default the Archive Location for the 
event logs and syslogs in Firewall 
Analyzer is <Firewall Analyzer 
Home>\server\default\archive 
directory, you can change this location 
by clicking the Edit link and providing 
the location as per your requirement. 
Change Raw 
Logs 
Indexing 
Location 
<Firewall Analyzer 
Home>\server\default\indexes 
directory 
By default the Index Location for the 
event logs and syslogs in Firewall 
Analyzer is <Firewall Analyzer 
Home>\server\default\indexes 
directory, you can change this location 
by clicking the Edit link and providing 
the location as per your requirement. 
You can create instant zip file of the existing log files waiting to be archived. Click Zip 
Now to create a zipped file with the currently available log files.  
Click Save to save the archiving options, if you have changed them. Click Close to close 
the Archive Settings box.  
Note: The currently active log files (i.e., logs not yet archived) will be stored in the 
<Firewall Analyzer Home>\server\default\archive\localhost\hot directory. The archived 
log files (i.e., logs archived as according to the archive settings) will be stored in the 
<Firewall Analyzer Home>\server\default\archive\localhost\cold directory. The archived 
log files loaded into database for analysis will be stored in the Warm directory. The log 
files will be stored in the <Firewall Analyzer 
Home>\server\default\archive\localhost\warm directory for 1 day and after that the log 
files will be purged.  










