The source we I am clicking on was just added yesterday so there's less than 24hours worth of data. I was hoping to retain a month of data as sometimes we won't be able to notice any issues until a week or so, and if the retention is set too low, we won't be able to go back and check historical data.
I am monitoring all 3 logs (access, error and messages) and it doesn't move when I click on the source. While it is loading there isn't any activity.
Here's the messages log, other logs have no activity.
Clicking in NA into a source
Code: Select all
Apr 30 13:40:00 nagiosna nfcapd[7133]: Ident: '5' Flows: 2105739, Packets: 187169867, Bytes: 103502253460, Sequence Errors: 0, Bad Packets: 0
Apr 30 13:40:00 nagiosna nfcapd[7133]: Signal launcher
Apr 30 13:40:00 nagiosna nfcapd[7133]: Total ignored packets: 0
Apr 30 13:40:00 nagiosna nfcapd[7165]: Ident: '7' Flows: 7661, Packets: 47834141, Bytes: 54853756737, Sequence Errors: 0, Bad Packets: 0
Apr 30 13:40:00 nagiosna nfcapd[7165]: Signal launcher
Apr 30 13:40:00 nagiosna nfcapd[7165]: Total ignored packets: 0
Apr 30 13:40:00 nagiosna nfcapd[7166]: Run expire on '/usr/local/nagiosna/var/ZGW-INT-B01/flows'
Apr 30 13:40:00 nagiosna nfcapd[7166]: Limits: Filesize <none>, Lifetime 3024000 = 5.0 weeks, Watermark: 95%
Apr 30 13:40:00 nagiosna nfcapd[7166]: Current size: 30658560 = 29.2 MB, Current lifetime: 761400 = 1.3 weeks, Number of files: 2539
Apr 30 13:40:00 nagiosna nfcapd[7166]: expire completed - nothing to expire.
Apr 30 13:40:00 nagiosna nfcapd[7166]: laucher child exit 1 childs.
Apr 30 13:40:00 nagiosna nfcapd[7166]: laucher waiting childs done. 0 childs
Apr 30 13:40:00 nagiosna nfcapd[7093]: Ident: '3' Flows: 177580, Packets: 101594312, Bytes: 88765928080, Sequence Errors: 0, Bad Packets: 0
Apr 30 13:40:00 nagiosna nfcapd[7093]: Signal launcher
Apr 30 13:40:00 nagiosna nfcapd[7093]: Total ignored packets: 0
Apr 30 13:40:00 nagiosna nfcapd[7094]: Run expire on '/usr/local/nagiosna/var/S3FP01N/flows'
Apr 30 13:40:00 nagiosna nfcapd[7094]: Limits: Filesize <none>, Lifetime 3024000 = 5.0 weeks, Watermark: 95%
Apr 30 13:40:00 nagiosna nfcapd[7094]: Current size: 19890323456 = 18.5 GB, Current lifetime: 2999400 = 5.0 weeks, Number of files: 9999
Apr 30 13:40:00 nagiosna nfcapd[7094]: expire completed - nothing to expire.
Apr 30 13:40:00 nagiosna nfcapd[7094]: laucher child exit 1 childs.
Apr 30 13:40:00 nagiosna nfcapd[7094]: laucher waiting childs done. 0 childs
Apr 30 13:40:01 nagiosna nfcapd[7134]: Run expire on '/usr/local/nagiosna/var/ZGW-INT-A01/flows'
Apr 30 13:40:01 nagiosna nfcapd[7134]: Limits: Filesize <none>, Lifetime 3024000 = 5.0 weeks, Watermark: 95%
Apr 30 13:40:01 nagiosna nfcapd[7134]: Current size: 5080039424 = 4.7 GB, Current lifetime: 763800 = 1.3 weeks, Number of files: 2547
Apr 30 13:40:01 nagiosna nfcapd[7134]: expire completed - nothing to expire.
Apr 30 13:40:01 nagiosna nfcapd[7101]: Ident: '4' Flows: 27243, Packets: 14281876, Bytes: 19197325545, Sequence Errors: 0, Bad Packets: 0
Apr 30 13:40:01 nagiosna nfcapd[7101]: Signal launcher
Apr 30 13:40:01 nagiosna nfcapd[7101]: Total ignored packets: 0
Apr 30 13:40:01 nagiosna nfcapd[7134]: laucher child exit 1 childs.
Apr 30 13:40:01 nagiosna nfcapd[7134]: laucher waiting childs done. 0 childs
Apr 30 13:40:01 nagiosna nfcapd[7102]: Run expire on '/usr/local/nagiosna/var/S3FP02N/flows'
Apr 30 13:40:01 nagiosna nfcapd[7102]: Limits: Filesize <none>, Lifetime 3024000 = 5.0 weeks, Watermark: 95%
Apr 30 13:40:01 nagiosna nfcapd[7102]: Current size: 2302107648 = 2.1 GB, Current lifetime: 2999400 = 5.0 weeks, Number of files: 9999
Apr 30 13:40:01 nagiosna nfcapd[7102]: expire completed - nothing to expire.
Apr 30 13:40:01 nagiosna nfcapd[7102]: laucher child exit 1 childs.
Apr 30 13:40:01 nagiosna nfcapd[7102]: laucher waiting childs done. 0 childs
Apr 30 13:40:10 nagiosna nfcapd[7085]: Ident: '2' Flows: 0, Packets: 0, Bytes: 0, Sequence Errors: 0, Bad Packets: 0
Apr 30 13:40:10 nagiosna nfcapd[7085]: Signal launcher
Apr 30 13:40:10 nagiosna nfcapd[7085]: Total ignored packets: 0
Apr 30 13:40:10 nagiosna nfcapd[7086]: Run expire on '/usr/local/nagiosna/var/S3FP02/flows'
Apr 30 13:40:10 nagiosna nfcapd[7086]: Limits: Filesize <none>, Lifetime 3024000 = 5.0 weeks, Watermark: 95%
Apr 30 13:40:10 nagiosna nfcapd[7086]: Current size: 40763392 = 38.9 MB, Current lifetime: 2985300 = 4.9 weeks, Number of files: 9952
Apr 30 13:40:10 nagiosna nfcapd[7086]: expire completed - nothing to expire.
Apr 30 13:40:10 nagiosna nfcapd[7086]: laucher child exit 1 childs.
Apr 30 13:40:10 nagiosna nfcapd[7086]: laucher waiting childs done. 0 childs
Apr 30 13:40:10 nagiosna nfcapd[7197]: Ident: '8' Flows: 0, Packets: 0, Bytes: 0, Sequence Errors: 0, Bad Packets: 0
Apr 30 13:40:10 nagiosna nfcapd[7197]: Signal launcher
Apr 30 13:40:10 nagiosna nfcapd[7197]: Total ignored packets: 0
Apr 30 13:40:10 nagiosna nfcapd[7198]: Run expire on '/usr/local/nagiosna/var/KIDC-VMware-RTS/flows'
Apr 30 13:40:10 nagiosna nfcapd[7198]: Limits: Filesize <none>, Lifetime 172800 = 2.0 days, Watermark: 95%
Apr 30 13:40:10 nagiosna nfcapd[7198]: Current size: 1286144 = 1.2 MB, Current lifetime: 93900 = 1.1 days, Number of files: 314
Apr 30 13:40:10 nagiosna nfcapd[7198]: expire completed - nothing to expire.
Apr 30 13:40:10 nagiosna nfcapd[7198]: laucher child exit 1 childs.
Apr 30 13:40:10 nagiosna nfcapd[7198]: laucher waiting childs done. 0 childs
Apr 30 13:40:10 nagiosna nfcapd[7053]: Ident: '1' Flows: 0, Packets: 0, Bytes: 0, Sequence Errors: 0, Bad Packets: 0
Apr 30 13:40:10 nagiosna nfcapd[7053]: Signal launcher
Apr 30 13:40:10 nagiosna nfcapd[7053]: Total ignored packets: 0
Apr 30 13:40:11 nagiosna nfcapd[7054]: Run expire on '/usr/local/nagiosna/var/S3FP01/flows'
Apr 30 13:40:11 nagiosna nfcapd[7054]: Limits: Filesize <none>, Lifetime 3024000 = 5.0 weeks, Watermark: 95%
Apr 30 13:40:11 nagiosna nfcapd[7054]: Current size: 40763392 = 38.9 MB, Current lifetime: 2985300 = 4.9 weeks, Number of files: 9952
Apr 30 13:40:11 nagiosna nfcapd[7054]: expire completed - nothing to expire.
Apr 30 13:40:11 nagiosna nfcapd[7054]: laucher child exit 1 childs.
Apr 30 13:40:11 nagiosna nfcapd[7054]: laucher waiting childs done. 0 childs
Clicking on Network traffic in XI
Code: Select all
Apr 30 13:45:00 nagiosna nfcapd[7133]: Ident: '5' Flows: 2098811, Packets: 177006184, Bytes: 106446785704, Sequence Errors: 0, Bad Packets: 0
Apr 30 13:45:00 nagiosna nfcapd[7133]: Signal launcher
Apr 30 13:45:00 nagiosna nfcapd[7133]: Total ignored packets: 0
Apr 30 13:45:00 nagiosna nfcapd[7101]: Ident: '4' Flows: 28857, Packets: 3726163, Bytes: 3828671956, Sequence Errors: 0, Bad Packets: 0
Apr 30 13:45:00 nagiosna nfcapd[7101]: Signal launcher
Apr 30 13:45:00 nagiosna nfcapd[7101]: Total ignored packets: 0
Apr 30 13:45:00 nagiosna nfcapd[7102]: Run expire on '/usr/local/nagiosna/var/S3FP02N/flows'
Apr 30 13:45:00 nagiosna nfcapd[7102]: Limits: Filesize <none>, Lifetime 3024000 = 5.0 weeks, Watermark: 95%
Apr 30 13:45:00 nagiosna nfcapd[7102]: Current size: 2302558208 = 2.1 GB, Current lifetime: 2999700 = 5.0 weeks, Number of files: 10000
Apr 30 13:45:00 nagiosna nfcapd[7102]: expire completed - nothing to expire.
Apr 30 13:45:00 nagiosna nfcapd[7102]: laucher child exit 1 childs.
Apr 30 13:45:00 nagiosna nfcapd[7102]: laucher waiting childs done. 0 childs
Apr 30 13:45:00 nagiosna nfcapd[7093]: Ident: '3' Flows: 196389, Packets: 86187379, Bytes: 63168076362, Sequence Errors: 0, Bad Packets: 0
Apr 30 13:45:00 nagiosna nfcapd[7093]: Signal launcher
Apr 30 13:45:00 nagiosna nfcapd[7093]: Total ignored packets: 0
Apr 30 13:45:00 nagiosna nfcapd[7165]: Ident: '7' Flows: 8211, Packets: 27040319, Bytes: 38577369306, Sequence Errors: 0, Bad Packets: 0
Apr 30 13:45:00 nagiosna nfcapd[7165]: Signal launcher
Apr 30 13:45:00 nagiosna nfcapd[7165]: Total ignored packets: 0
Apr 30 13:45:00 nagiosna nfcapd[7134]: Run expire on '/usr/local/nagiosna/var/ZGW-INT-A01/flows'
Apr 30 13:45:00 nagiosna nfcapd[7134]: Limits: Filesize <none>, Lifetime 3024000 = 5.0 weeks, Watermark: 95%
Apr 30 13:45:00 nagiosna nfcapd[7134]: Current size: 5115060224 = 4.8 GB, Current lifetime: 764100 = 1.3 weeks, Number of files: 2548
Apr 30 13:45:00 nagiosna nfcapd[7134]: expire completed - nothing to expire.
Apr 30 13:45:00 nagiosna nfcapd[7134]: laucher child exit 1 childs.
Apr 30 13:45:00 nagiosna nfcapd[7134]: laucher waiting childs done. 0 childs
Apr 30 13:45:00 nagiosna nfcapd[7166]: Run expire on '/usr/local/nagiosna/var/ZGW-INT-B01/flows'
Apr 30 13:45:00 nagiosna nfcapd[7166]: Limits: Filesize <none>, Lifetime 3024000 = 5.0 weeks, Watermark: 95%
Apr 30 13:45:00 nagiosna nfcapd[7166]: Current size: 30797824 = 29.4 MB, Current lifetime: 761700 = 1.3 weeks, Number of files: 2540
Apr 30 13:45:00 nagiosna nfcapd[7166]: expire completed - nothing to expire.
Apr 30 13:45:00 nagiosna nfcapd[7166]: laucher child exit 1 childs.
Apr 30 13:45:00 nagiosna nfcapd[7166]: laucher waiting childs done. 0 childs
Apr 30 13:45:01 nagiosna nfcapd[7094]: Run expire on '/usr/local/nagiosna/var/S3FP01N/flows'
Apr 30 13:45:01 nagiosna nfcapd[7094]: Limits: Filesize <none>, Lifetime 3024000 = 5.0 weeks, Watermark: 95%
Apr 30 13:45:01 nagiosna nfcapd[7094]: Current size: 19893346304 = 18.5 GB, Current lifetime: 2999700 = 5.0 weeks, Number of files: 10000
Apr 30 13:45:01 nagiosna nfcapd[7094]: expire completed - nothing to expire.
Apr 30 13:45:01 nagiosna nfcapd[7094]: laucher child exit 1 childs.
Apr 30 13:45:01 nagiosna nfcapd[7094]: laucher waiting childs done. 0 childs
Apr 30 13:45:10 nagiosna nfcapd[7085]: Ident: '2' Flows: 0, Packets: 0, Bytes: 0, Sequence Errors: 0, Bad Packets: 0
Apr 30 13:45:10 nagiosna nfcapd[7085]: Signal launcher
Apr 30 13:45:10 nagiosna nfcapd[7085]: Total ignored packets: 0
Apr 30 13:45:10 nagiosna nfcapd[7086]: Run expire on '/usr/local/nagiosna/var/S3FP02/flows'
Apr 30 13:45:10 nagiosna nfcapd[7086]: Limits: Filesize <none>, Lifetime 3024000 = 5.0 weeks, Watermark: 95%
Apr 30 13:45:10 nagiosna nfcapd[7086]: Current size: 40767488 = 38.9 MB, Current lifetime: 2985600 = 4.9 weeks, Number of files: 9953
Apr 30 13:45:10 nagiosna nfcapd[7086]: expire completed - nothing to expire.
Apr 30 13:45:10 nagiosna nfcapd[7086]: laucher child exit 1 childs.
Apr 30 13:45:10 nagiosna nfcapd[7086]: laucher waiting childs done. 0 childs
Apr 30 13:45:10 nagiosna nfcapd[7197]: Ident: '8' Flows: 0, Packets: 0, Bytes: 0, Sequence Errors: 0, Bad Packets: 0
Apr 30 13:45:10 nagiosna nfcapd[7197]: Signal launcher
Apr 30 13:45:10 nagiosna nfcapd[7197]: Total ignored packets: 0
Apr 30 13:45:10 nagiosna nfcapd[7198]: Run expire on '/usr/local/nagiosna/var/KIDC-VMware-RTS/flows'
Apr 30 13:45:10 nagiosna nfcapd[7198]: Limits: Filesize <none>, Lifetime 172800 = 2.0 days, Watermark: 95%
Apr 30 13:45:10 nagiosna nfcapd[7198]: Current size: 1290240 = 1.2 MB, Current lifetime: 94200 = 1.1 days, Number of files: 315
Apr 30 13:45:10 nagiosna nfcapd[7198]: expire completed - nothing to expire.
Apr 30 13:45:10 nagiosna nfcapd[7198]: laucher child exit 1 childs.
Apr 30 13:45:10 nagiosna nfcapd[7198]: laucher waiting childs done. 0 childs
Apr 30 13:45:10 nagiosna nfcapd[7053]: Ident: '1' Flows: 0, Packets: 0, Bytes: 0, Sequence Errors: 0, Bad Packets: 0
Apr 30 13:45:10 nagiosna nfcapd[7053]: Signal launcher
Apr 30 13:45:10 nagiosna nfcapd[7053]: Total ignored packets: 0
Apr 30 13:45:11 nagiosna nfcapd[7054]: Run expire on '/usr/local/nagiosna/var/S3FP01/flows'
Apr 30 13:45:11 nagiosna nfcapd[7054]: Limits: Filesize <none>, Lifetime 3024000 = 5.0 weeks, Watermark: 95%
Apr 30 13:45:11 nagiosna nfcapd[7054]: Current size: 40767488 = 38.9 MB, Current lifetime: 2985600 = 4.9 weeks, Number of files: 9953
Apr 30 13:45:11 nagiosna nfcapd[7054]: expire completed - nothing to expire.
Apr 30 13:45:11 nagiosna nfcapd[7054]: laucher child exit 1 childs.
Apr 30 13:45:11 nagiosna nfcapd[7054]: laucher waiting childs done. 0 childs
I can bump the NA to 8GB of RAM to test. We have only 4 sources total collecting data which doesn't seem like a lot. But could also be due the the volume I guess. But even navigating the pages within NA is painfully slow. I do want to mention that this server does not have any access to the internet. I wonder if there is anything that's trying to talk with the outside world? (just a wild stab)