Fortinet black logo

Handbook

Attack Log Backup

Copy Link
Copy Doc ID 7b437c33-fcc7-11ec-bb32-fa163e15d75b:509786
Download PDF

Attack Log Backup

You can download the DDoS Attack Log collection, which you may want to do if you are following manual procedures for storing log data or a manual process for purging the local log.

The download file is a MySQL export. You can import it into a MySQL database server to rebuild the flg database, including the dlog table.

Before you begin:

  • You must have Read-Write permission for Log & Report settings.
  • You must have SQL database expertise.
To download collected logs:
  1. Go to Log & Report > Log Access > Log Backup.
  2. Enable DDoS Attack Log Backup.
  3. Select SPP from dropdown.
  4. Click Save to start the backup process.
  5. Click Refresh to check whether the backup is complete.
  6. Click Download.

Note: For HA Active-Passive pairs, this procedure can be done on the Primary node. To do this on the Secondary node, you must change the Secondary from Active-Passive to Standalone mode, then follow the procedure above and return the Slave to Active-Passive Mode. Go to System > High Availability > Configured HA Mode setting to change Standalone/Active-Passive mode.

Log backup

Attack Log Backup

You can download the DDoS Attack Log collection, which you may want to do if you are following manual procedures for storing log data or a manual process for purging the local log.

The download file is a MySQL export. You can import it into a MySQL database server to rebuild the flg database, including the dlog table.

Before you begin:

  • You must have Read-Write permission for Log & Report settings.
  • You must have SQL database expertise.
To download collected logs:
  1. Go to Log & Report > Log Access > Log Backup.
  2. Enable DDoS Attack Log Backup.
  3. Select SPP from dropdown.
  4. Click Save to start the backup process.
  5. Click Refresh to check whether the backup is complete.
  6. Click Download.

Note: For HA Active-Passive pairs, this procedure can be done on the Primary node. To do this on the Secondary node, you must change the Secondary from Active-Passive to Standalone mode, then follow the procedure above and return the Slave to Active-Passive Mode. Go to System > High Availability > Configured HA Mode setting to change Standalone/Active-Passive mode.

Log backup