SRX

last person joined: yesterday 

Ask questions and share experiences about the SRX Series, vSRX, and cSRX.
  • 1.  Screen feature - /var/log/rtlogd

    Posted 11-12-2009 08:23

    When using the screen features, rtlogd seems to log messages for every triggered event to /var/log/rtlogd.

     

    Problem:

    If, for example, icmp flood protection is triggered, a message for every blocked icmp packet is created in /var/log/rtlogd.

    In case of icmp-flooding the log file grows very fast.

     

    Is it possible to make rtlogd stop logging to /var/log/rtlogd?

     



  • 2.  RE: Screen feature - /var/log/rtlogd
    Best Answer

    Posted 12-15-2010 11:26

    Everytime I brought this issue up with JTAC, I received the answer that I should contact a sales engineer for this feature request.

     

    We had problems about this several times where extensive logging at an actual attack situation causing router to use a lot of CPU and disk IO and become unresponsive....

     

    So the short answer is no, there is no way, but you can try to contact with an SE for a feature request.



  • 3.  RE: Screen feature - /var/log/rtlogd

    Posted 03-27-2012 07:54

    Hi,

     

    In case anybody checks this thread, you can try:

    set system processes security-log disable

     

    Cheers,

    Roberts