Symantec 10521146 Administration Guide - Page 252

Compressing log files, Setting Compression On/Off Switch

Page 252 highlights

252 Managing log files Configuring automatic archiving 3 In the left pane, under Log & Database Parameters, click Limit Size for Traffic Record Directory. 4 In the lower right pane, enter a size in GB. 5 Click Apply. 6 In Apply Changes To, select the node to which to apply the parameter. 7 Click OK to save the changes to this node and close. Compressing log files The Network Security console provides a way to conserve disk space by configuring Symantec Network Security to automatically compress log files when they are archived, regardless of the method of archiving. Log file compression is also useful when transferring via SCP. If compression is enabled, then when the operational log is archived, it is renamed using the manhunt.YYMMDDHHMMSS.bz2 format. In that case, the incident and event logs are also compressed and named in the logs.YYMMDDHHMMSS.tar.bz2 format. If compression is disabled, then when the operational log is archived, it is renamed using the manhunt.YYMMDDHHMMSS format. In that case, the incident and event logs are archived into a single file, and named in the logs.YYMMDDHHMMSS.tar format. In either case, when the event log is archived, it is signed by the iButton or soft token, whether compression is enabled or not. Note: Compression may require large amounts of memory and CPU for large logs. Use the following parameters to configure compression procedures: ■ Setting Compression On/Off Switch ■ Setting Compression Command Setting Compression On/Off Switch Compression On/Off Switch determines whether Symantec Network Security automatically compresses log files when archived, regardless of the archiving method. Use Compression On/Off Switch to save disk space or to move log files via Secure Copy Protocol (SCP). If you activate log compression, you can also specify the compression command. By default, the value of this parameter is set to off.

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304
  • 305
  • 306
  • 307
  • 308
  • 309
  • 310
  • 311
  • 312
  • 313
  • 314
  • 315
  • 316
  • 317
  • 318
  • 319
  • 320
  • 321
  • 322
  • 323
  • 324
  • 325
  • 326
  • 327
  • 328
  • 329
  • 330
  • 331
  • 332
  • 333
  • 334
  • 335
  • 336
  • 337
  • 338
  • 339
  • 340
  • 341
  • 342
  • 343
  • 344
  • 345
  • 346
  • 347
  • 348
  • 349
  • 350
  • 351
  • 352
  • 353
  • 354
  • 355
  • 356
  • 357
  • 358
  • 359
  • 360
  • 361
  • 362
  • 363
  • 364
  • 365
  • 366
  • 367
  • 368
  • 369
  • 370
  • 371
  • 372
  • 373
  • 374
  • 375
  • 376
  • 377
  • 378
  • 379
  • 380
  • 381
  • 382
  • 383
  • 384
  • 385
  • 386
  • 387
  • 388
  • 389
  • 390
  • 391
  • 392

252
Managing log files
Configuring automatic archiving
3
In the left pane, under
Log & Database Parameters
, click
Limit Size for
Traffic Record Directory
.
4
In the lower right pane, enter a size in GB.
5
Click
Apply
.
6
In
Apply Changes To
, select the node to which to apply the parameter.
7
Click
OK
to save the changes to this node and close.
Compressing log files
The Network Security console provides a way to conserve disk space by
configuring Symantec Network Security to automatically compress log files
when they are archived, regardless of the method of archiving. Log file
compression is also useful when transferring via SCP.
If compression is enabled, then when the operational log is archived, it is
renamed using the
manhunt.YYMMDDHHMMSS.bz2
format. In that case, the
incident and event logs are also compressed and named in the
logs.YYMMDDHHMMSS.tar.bz2
format.
If compression is disabled, then when the operational log is archived, it is
renamed using the
manhunt.YYMMDDHHMMSS
format. In that case, the incident and
event logs are archived into a single file, and named in the
logs.YYMMDDHHMMSS.tar
format.
In either case, when the event log is archived, it is signed by the iButton or soft
token, whether compression is enabled or not.
Note:
Compression may require large amounts of memory and CPU for large
logs.
Use the following parameters to configure compression procedures:
Setting Compression On/Off Switch
Setting Compression Command
Setting Compression On/Off Switch
Compression On/Off Switch
determines whether Symantec Network Security
automatically compresses log files when archived, regardless of the archiving
method. Use Compression On/Off Switch to save disk space or to move log files
via Secure Copy Protocol (SCP). If you activate log compression, you can also
specify the compression command.
By default, the value of this parameter is set to
off
.