Displays the active log file, a list of all log files, an archived log file, or selected entries in the active log. You can also display log entries continuously as they are added to the active log.
Syntax
show log [files [<log_id>] | continuous | matching <regular_expression> | not matching <regular_expression>]
Parameters
files [<log_id>]
Lists the name and ID number of each log file, and the date and time of its first and last entries. To view the entries in an archived log, specify their log ID. To view the active log, enter show log
continuous
Displays each log entry as it is added to the active log.
matching <regular_expression>
Displays the log entries in the active log that match the specified regular expression. All special characters supported by the UNIX grep utility can be used here, such as “*” to indicate any string of text and “?” to indicate any single character.
not matching <regular_expression>
Displays the log entries in the active log that do not match the specified regular expression. All special characters supported by the UNIX grep utility can be used here, such as “*” to indicate any string of text and “?” to indicate any single character.
Example
The following example displays the log entries for the standard log format.
hostname # show log
pegasus/nim/mon/entity/aa:00:75:df:95:ac/outpkts: 80 Oct 27 11:11:56 docs lms[1959]: [lmsd.NOTICE]: lms_proxy: query iterate[406]=/
pegasus/nim/mon/entity/aa:00:75:df:85:ac : aa:00:75:df:85:ac Oct 27 11:11:56 docs lms[1959]: [lmsd.NOTICE]: lms_proxy: query iterate[407]=/
pegasus/nim/mon/entity/aa:00:75:df:85:ac/inbytes: 0 Oct 27 11:11:56 docs lms[1959]: [lmsd.NOTICE]: lms_proxy: query iterate[408]=/
pegasus/nim/mon/entity/aa:00:75:df:85:ac/inpkts: 0 Oct 27 11:11:56 docs lms[1959]: [lmsd.NOTICE]: lms_proxy: query iterate[409]=/
pegasus/nim/mon/entity/aa:00:75:df:85:ac/ip: 172.16.117.7 Oct 27 11:11:56 docs lms[1959]: [lmsd.NOTICE]: lms_proxy: query iterate[410]=/
pegasus/nim/mon/entity/aa:00:75:df:85:ac/mac: AA:00:75:DF:85:AC Oct 27 11:11:56 docs lms[1959]: [lmsd.NOTICE]: lms_proxy: query iterate[411]=/
...
Supported appliances
This command is supported on the following appliances running the specified releases or later:
Endpoint Security (HX): Release 2.5