WatchGuard x1000 Mode D'Emploi
Chapter 13: Reviewing and Working with Log Files
230
WatchGuard Firebox System
2
Click Copy each file individually.
3
Enter the file to copy in the Files to Copy box.
4
Enter the destination for the file in the Copy to This
Directory box.
Directory box.
5
Click Copy.
The log file is copied to the new directory with the same file
name.
Forcing the rollover of log files
Log rollover refers to new log files being created while old
ones are deleted or archived. In general, log files roll over
based on WSEP Status/Configuration settings. For more
information, see “Setting the interval for log rollover” on
page 212. However, you may occasionally want to force the
rollover of a log file.
•
ones are deleted or archived. In general, log files roll over
based on WSEP Status/Configuration settings. For more
information, see “Setting the interval for log rollover” on
page 212. However, you may occasionally want to force the
rollover of a log file.
•
From the WSEP Status/Configuration user interface,
select File => Roll Current Log File.
select File => Roll Current Log File.
The old log file is saved as Firebox IP Time Stamp.wgl or Firebox
Name Time Stamp.wgl. The Event Processor continues writing
new records to Firebox IP.wgl or Firebox Name.wgl.
Saving log files to a new location
Although log files are, by default, stored in a subdirectory
of the WatchGuard installation directory called /logs, you
can change this destination by using a text editor to edit the
controld.wgc
of the WatchGuard installation directory called /logs, you
can change this destination by using a text editor to edit the
controld.wgc
file.
1
Open a text editor, such as Microsoft Wordpad.
2
Use the text editor to open the controld.wgc file in
the WatchGuard installation directory.
the WatchGuard installation directory.
The default location is C:\Program
Files\WatchGuard\controld.wgc.
3
Look for a line reading logdir: logs. Change logs
to the complete or relative path name of the new
destination.
to the complete or relative path name of the new
destination.
For example, to change the destination to an archive directory
with the subdirectory WGLogs on the D: drive, the syntax is
logdir: D:\Archive\WGLogs.
4
Save your changes and exit the text editor.