Capturing logs for more than 30 minutes
cyber_monkey
Newbie ✭
All,
I seem to only be able to capture event logs for 30 minutes. I was scanning our company firewall last night (8/28) with nmap, and I have none of the logs from last night to view. How can I extend the log view and see more logs?
SonicOS Enhanced 6.5.4.11-97n
Model: TZ 600
Category: Mid Range Firewalls
0
Best Answer
-
BWC Cybersecurity Overlord ✭✭✭
@cyber_monkey the answer to that is still valid:
You need an external log storage solution, the little ring buffer on the appliance cannot keep up.
--Michael@BWC
2
Answers
There are third-party Syslog Servers available and SonicWall has Analytics/NSM SaaS and on-prem solutions.
https://www.sonicwall.com/medialibrary/en/datasheet/datasheet-sonicwall-analytics.pdf