Use the CLI commands in this section to configure the maximum number of archived log files you want to store on the appliance for SSL flows. The rotation of log files removes the oldest archived log file from the Network Security appliance. The log rotation allows the appliance to rename the current log file and set up a new log file to capture SSL flows. After the maximum size of the current log file is reached, the Network Security appliance stores the current log file and creates a new log file. The default number of archived log files that can be stored is 5.
Note
You can configure the number of archived log files only using the CLI.
Prerequisites
Administrator access to the Network Security appliance.
Verify that SSL interception is configured and enabled. For details about how to enable SSL interception, see Enabling or disabling SSL interception using the Web UI or Enabling or disabling SSL interception using the CLI.
Go to CLI configuration mode.
hostname > enable hostname # configure terminal
Specify the maximum number of archived log files to store.
hostname (config) # session-logger ssl set rotation max-num <number_of_log_files>
Verify the maximum number of archived log files to store on the appliance.
hostname (config) # show session-logger ssl config Feature Status : enabled Max File Rotation Limit : 10 ........
The "Max File Rotation Limit" line displays the maximum number of archived log files to store on the appliance.
Go to CLI configuration mode.
hostname > enable hostname # configure terminal
Restore the maximum number of archived log files to the default value.
hostname (config) # no session-logger ssl set rotation max-num
Verify the maximum number of archived log files to store on the appliance.
hostname (config) # show session-logger ssl config Feature Status : enabled Max File Rotation Limit : 5 ........