Starting a global search
To perform a simple global search, use the default values for the search federation, cluster and log time, then select a log type.
To perform a simple search:
- Select a search federation. Default” is the default.
- Select a cluster. LocalCluster is the default.
- Select the log time. Last 1 hour is the default.
- Select the log type. For example, FortiGate Traffic.
- (Optional) Select the log labels filter.
- Click Run Query to start a search.
Global Search settings
The following image and the corresponding to table provide information about each of the Global Search settings.
Search setting | Description | |
---|---|---|
|
Search Federation dropdown |
Click the dropdown menu to select a federation. The default is Default. |
|
Time Range selection |
Click the dropdown menu to select a time range. The default is Last 1 hour. |
|
Run Query | Click Run Query to start the search. |
|
Server | Click the dropdown to select a server. The default is Local Cluster. |
|
Log Type | Click the dropdown to select a log type. |
|
Log Label | Click the dropdown to select a log label. |
|
Log Query Input | Use this field to enter the log query. |
|
Histogram | Displays the log time-range. |
|
Log details | Displays the log details. |