Create a purge events server task best practice

Prev Next

Create an automated server task that deletes all events in the database that are older and no longer needed.

Note

Some organizations have specific event retention policies or reporting requirements. Make sure that your purge event settings conform to those policies.

For details about product features, usage, and best practices, click ? or Help.

  1. To open the Server Task Builder dialog box, select MenuAutomationServer Tasks, then click ActionsNew Task.

  2. Type a name for the task, for example Delete client events, add a description, then click Next.

  3. On the Actions tab, configure these actions from the list:

    • Purge Audit Log — Purge after 6 months.

    • Purge Client Events — Purge after 6 months.

    • Purge Server Task Log — Purge after 6 months.

    • Purge Threat Event Log — Purge every day.

    • Purge SiteAdvisor Enterprise Events — Purge after 10 days.

      Note

      You can chain the actions all in one task so that you don't have to create multiple tasks.

      This example purges Web Control events because they are not included in the normal events table and require their own purge task. The Web Control events are retained for only 10 days because they collect all URLs visited by managed systems. These events can save a large amount of data in environments with more than 10,000 systems. Therefore, this data is saved for a much shorter time compared to other event types.

  4. Click Next and schedule the task to run every day during non-business hours.

  5. Click the Summary tab, confirm that the server task settings are correct, then click Save.