Difference between revisions of "Monitoring"

From Tech-Wiki
Jump to: navigation, search
Line 3: Line 3:
 
Viewing logs from command line
 
Viewing logs from command line
 
  exec log filter category 1 (1:event 0:traffic 3:webfilter)
 
  exec log filter category 1 (1:event 0:traffic 3:webfilter)
 +
exec log filter device 0 (0:memory 1:faz (fortianalyzer) 2:fds (disk))
 
  exec log filter view-lines 200
 
  exec log filter view-lines 200
 
  exec log display
 
  exec log display

Revision as of 19:34, 6 November 2016


Viewing logs from command line

exec log filter category 1 (1:event 0:traffic 3:webfilter)
exec log filter device 0 (0:memory 1:faz (fortianalyzer) 2:fds (disk))
exec log filter view-lines 200
exec log display

Get system information:

get sys status
get sys performance status
get hardware status
diag hardware deviceinfo disk

Get CPU information and killing (restarting) process:

diag sys top
diag sys top-summary
diag sys kill 11 <pid>  (or kill 15)

Get memory information and conserve mode:

diag hardware sysinfo mem
diag hardware sysinfo shm
   0 – no conserve mode
   1 – proxy
   2 – system
   3 - both
diag firewall iprope state
   Av_break=pass/pass – kernel conserve mode

Get network information and statistics:

show sys interface
diag hardware deviceinfo nic <port>
fnsysctl ifconfig <port>

Get disk logging statistics:

 diag sys logdisk usage

Display IPs blocked by Anomalies:

 diag ips anomaly list