OPNsense
  • Home
  • Help
  • Search
  • Login
  • Register

  • OPNsense Forum »
  • English Forums »
  • Intrusion Detection and Prevention »
  • [SOLVED] Suricata logs gets automatically deleted
« previous next »
  • Print
Pages: [1]

Author Topic: [SOLVED] Suricata logs gets automatically deleted  (Read 773 times)

Wrigleys

  • Newbie
  • *
  • Posts: 15
  • Karma: 1
    • View Profile
[SOLVED] Suricata logs gets automatically deleted
« on: August 11, 2024, 11:46:03 am »
Dear Community

I decided to give Suricata with the latest Update to 24.7.1 another try.

My goal is to drop any matching Rule from abuse.ch. As far so good. I noticed, that the Alert Log inside WebGUI gets deleted really often. Sometimes every 20 minutes or at least every few hours. My log rotation is set to Weekly and my logs are stored on RAM. I have used 2GB of my 16GB RAM and 50% of the capacity could be filled by logs.

The suricata service runs stable and it seems working normally exept of missing potential log history.

Did you experience something similar to my findings?

Many thanks for your help.

Best regards
Wrigleys
« Last Edit: August 11, 2024, 09:50:58 pm by Wrigleys »
Logged

Wrigleys

  • Newbie
  • *
  • Posts: 15
  • Karma: 1
    • View Profile
Suricata logs gets automatically deleted
« Reply #1 on: August 11, 2024, 09:43:42 pm »
Update from my end:

After triggering some test log entries, the log Date and timestamp (dropdown on top right) gets renewed (really don‘t know why), but the logs are still visible.

Therefore no logs are getting deleted.

Thread closed.
Logged

  • Print
Pages: [1]
« previous next »
  • OPNsense Forum »
  • English Forums »
  • Intrusion Detection and Prevention »
  • [SOLVED] Suricata logs gets automatically deleted
 

OPNsense is an OSS project © Deciso B.V. 2015 - 2024 All rights reserved
  • SMF 2.0.19 | SMF © 2021, Simple Machines
    Privacy Policy
    | XHTML | RSS | WAP2