Specifies the retention period for nonmalicious and malicious alerts. After this period, alerts are removed from the events database that you configured on the appliance. Currently, only nonmalicious alerts are removed from the events database when the limit specified by the fedb events archival himark command is reached.
Use the fedb events archival age days command to automatically remove all malicious and nonmalicious alerts that exceed the retention period from the events database. If you do not specify the retention period or specify the retention period as zero days, data will not be removed from the events database.
By default, the retention period is not set on the appliance.
Syntax
fedb events archival age days <number>
Parameters
<number>
Example
The following example specifies the retention period as seven days:
hostname (config) # fedb events archival age days 7
User role
Admin
Command mode
Config
Supported appliances
This command is supported on the following appliances running the specified releases or later:
Central Management System: Release 7.8
Network Security: Release 7.8