Viewing content archives

Content Archive

whether the FortiAnalyzer unit has the copy of the file or message associated with the summary log message (that is, full content archives do not appear if you have deleted the associated copy of the file or message)

For more information about requirements and configuration of content archiving, see the FortiGate Administration Guide.

To view content archives, go to Content Archive, then select the content archive type. Each type has similar controls.

Figure 1: Content Archive

Column Settings

Printable Version

Show

Select the FortiGate device from the list.

Timeframe

Select the time span of log data that you want to view.

Resolve Host Name

Select to view the IP alias instead of the client’s IP address. You

 

must configure the IP aliases on the FortiAnalyzer unit for this

 

setting to take effect. For more information, see “Configuring IP

 

aliases” on page 61.

 

Note: This option is not available for the email content archive.

Formatted Raw

Select a view of the content log file. Selecting Formatted (the

 

default) displays the content log messages in columnar format.

 

Selecting Raw displays the content log messages as they appear

 

in the content log files.

View per page Page n of n Column Settings

Select the number of rows of log entries to display per page. Enter a page number, then press Enter to go to the page.

Select to change the columns to view and the order they appear on the page. For more information, see “Displaying and arranging log columns” on page 109.

Search

Enter a keyword to perform a simple search on the available log

 

information, then select Go or press the Enter key to begin the

 

search. For more information about on search, see “Searching the

 

logs” on page 101.

Printable Version

Delete associated content archive files

Select to download an HTML file containing all content archive summaries that match the current filters. The HTML file is formatted to be printable.

Time required to generate and download large reports varies by the total amount of log messages, the complexity of any search criteria, the specificity of your column filters, and the speed of your network connection.

Select to delete all content archive files associated with the currently selected device.

Note: This option is not available for the VoIP content archive.

FortiAnalyzer Version 3.0 MR7 Administration Guide

108

05-30007-0082-20080908

Page 110
Image 110
Fortinet 3.0 MR7 manual Timeframe, View per page Page n of n Column Settings