Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

System Log Empty

Hello, we have several devices running (SFOS 17.5.15 MR-15) that are with Log viewer / System log empty.

Doe someone has ideia about fix it ? is it a know issue!?

regards

Carlos



This thread was automatically locked due to age.
Parents
  • Hello Carlos,

    Thank you for contacting the Sophos Community.

    Additionally to what Luca has mentioned, can you run the following command from the Advanced Shell of the XG (5>3) you would need to SSH for this.

    Then run:

    service garner:restart -ds nosync

    Additionally to this check for errors under

    /log/fwlog.log 

    /log/garner.log

    or if you have any coredump

    /var/cores

    Also check yous space in disk

    # df -h

    And run this command from the console (5>4)

    console > system diagnostics show disk

    Regards,

Reply
  • Hello Carlos,

    Thank you for contacting the Sophos Community.

    Additionally to what Luca has mentioned, can you run the following command from the Advanced Shell of the XG (5>3) you would need to SSH for this.

    Then run:

    service garner:restart -ds nosync

    Additionally to this check for errors under

    /log/fwlog.log 

    /log/garner.log

    or if you have any coredump

    /var/cores

    Also check yous space in disk

    # df -h

    And run this command from the console (5>4)

    console > system diagnostics show disk

    Regards,

Children
  • Hi ,

    Thank you by your reply!

    I already executed the service garner:restart -ds nosync, without no changes

    About the logs

    # tail -f /log/fwlog.log garner: connect(/tmp/garner.sock) failed: Resource temporarily unavailable garner: connect(/tmp/garner.sock) failed: Resource temporarily unavailable garner: connect(/tmp/garner.sock) failed: Resource temporarily unavailable garner: connect(/tmp/garner.sock) failed: Resource temporarily unavailable garner: connect(/tmp/garner.sock) failed: Resource temporarily unavailable garner: connect(/tmp/garner.sock) failed: Resource temporarily unavailable garner: connect(/tmp/garner.sock) failed: Resource temporarily unavailable garner: connect(/tmp/garner.sock) failed: Resource temporarily unavailable garner: connect(/tmp/garner.sock) failed: Resource temporarily unavailable  

    # tail -f /log/garner.log

    ERROR Apr 30 09:41:24 [4146678080]: handle_accept: write() failed during handshake: Broken pipe ERROR Apr 30 09:41:24 [4146678080]: handle_accept: write() failed during handshake: Broken pipe ERROR Apr 30 09:41:24 [4146678080]: handle_accept: write() failed during handshake: Broken pipe ERROR Apr 30 09:41:24 [4146678080]: handle_accept: write() failed during handshake: Broken pipe ERROR Apr 30 09:41:24 [4146678080]: handle_accept: write() failed during handshake: Broken pipe ERROR Apr 30 09:41:24 [4146678080]: handle_accept: write() failed during handshake: Broken pipe

    --->Mismatch in idxes..enlarge if to cpu --->Mismatch in idxes..enlarge if to cpu --->Mismatch in idxes..enlarge if to cpu --->Mismatch in idxes..enlarge if to cpu --->Mismatch in idxes..enlarge if to cpuCREVENTS: Apr 30 09:43:20:sqlite_db_do_select: query failed: no such table: tblav CREVENTS: Apr 30 09:43:20:handle_datafetch_req: query 'select count(distinct virus) as count from tblav where log_comp in (9,48);' failed CREVENTS: Apr 30 09:43:20:sqlite_db_do_select: query failed: no such table: tblav CREVENTS: Apr 30 09:43:20:handle_datafetch_req: query 'select count(distinct virus) as count from tblav where log_comp in (11,12,13,59,61,62);' failed CREVENTS: Apr 30 09:43:20:sqlite_db_do_select: query failed: no such table: tblas CREVENTS: Apr 30 09:43:20:handle_datafetch_req: query 'select (SELECT count(1) from tblav) + (select count(1) from tblas) as count,count(*) as spam from tblas;' failed CREVENTS: Apr 30 09:43:21:sqlite_db_do_select: query failed: no such table: tblav CREVENTS: Apr 30 09:43:21:handle_datafetch_req: query 'select distinct virus, count(virus) as count from tblav group by virus order by count desc limit 5;' failed usage:  nvram get <key>  nvram set <key> <value>  nvram del <key>  nvram clear ERROR Apr 30 09:46:24 [4121480000]: [SCM::get_is_password_random] '/bin/nvram get #scm.RandomPass' failed ERROR Apr 30 09:46:24 [4121480000]: [SCM::who_was_killer] '/bin/nvram get #scm.RandomPass' terminated with exit code 1 nvram_get(): failed with -16 ERROR Apr 30 09:46:24 [4121480000]: [SCM::scm_get_expire_days] scm_get_expire_days: lic_get_details failed for 'li.email'

    nvram_get(): failed with -16 ERROR Apr 30 09:46:24 [4121480000]: [SCM::scm_get_expire_days] scm_get_expire_days: lic_get_details failed for 'li.waf'

    nvram_get(): failed with -16 ERROR Apr 30 09:46:24 [4121480000]: [SCM::scm_get_expire_days] scm_get_expire_days: lic_get_details failed for 'li.epsup'

    nvram_get(): failed with -16 ERROR Apr 30 09:46:24 [4121480000]: [SCM::scm_get_expire_days] scm_get_expire_days: lic_get_details failed for 'li.sand'

    nvram_get(): failed with -16 ERROR Apr 30 09:46:24 [4121480000]: [SCM::scm_get_module_status] scm_get_module_status: lic_get_details failed for 'li.email'

    nvram_get(): failed with -16 ERROR Apr 30 09:46:24 [4121480000]: [SCM::scm_get_module_status] scm_get_module_status: lic_get_details failed for 'li.waf'

    nvram_get(): failed with -16 ERROR Apr 30 09:46:24 [4121480000]: [SCM::scm_get_module_status] scm_get_module_status: lic_get_details failed for 'li.epsup'

    nvram_get(): failed with -16 ERROR Apr 30 09:46:24 [4121480000]: [SCM::scm_get_module_status] scm_get_module_status: lic_get_details failed for 'li.sand'

    svc:uid_resolve_continue:relative uid(1022) do not exist svc:_resolve_uid:Cannot resolve uid 1022 usage:  nvram get <key>  nvram set <key> <value>  nvram del <key>  nvram clear ERROR Apr 30 09:51:25 [4121480000]: [SCM::get_is_password_random] '/bin/nvram get #scm.RandomPass' failed ERROR Apr 30 09:51:25 [4121480000]: [SCM::who_was_killer] '/bin/nvram get #scm.RandomPass' terminated with exit code 1 nvram_get(): failed with -16 ERROR Apr 30 09:51:25 [4121480000]: [SCM::scm_get_expire_days] scm_get_expire_days: lic_get_details failed for 'li.email'

    nvram_get(): failed with -16 ERROR Apr 30 09:51:25 [4121480000]: [SCM::scm_get_expire_days] scm_get_expire_days: lic_get_details failed for 'li.waf'

    nvram_get(): failed with -16 ERROR Apr 30 09:51:25 [4121480000]: [SCM::scm_get_expire_days] scm_get_expire_days: lic_get_details failed for 'li.epsup'

    nvram_get(): failed with -16 ERROR Apr 30 09:51:25 [4121480000]: [SCM::scm_get_expire_days] scm_get_expire_days: lic_get_details failed for 'li.sand'

    nvram_get(): failed with -16 ERROR Apr 30 09:51:25 [4121480000]: [SCM::scm_get_module_status] scm_get_module_status: lic_get_details failed for 'li.email'

    nvram_get(): failed with -16 ERROR Apr 30 09:51:25 [4121480000]: [SCM::scm_get_module_status] scm_get_module_status: lic_get_details failed for 'li.waf'

    nvram_get(): failed with -16 ERROR Apr 30 09:51:25 [4121480000]: [SCM::scm_get_module_status] scm_get_module_status: lic_get_details failed for 'li.epsup'

    nvram_get(): failed with -16 ERROR Apr 30 09:51:25 [4121480000]: [SCM::scm_get_module_status] scm_get_module_status: lic_get_details failed for 'li.sand'

    No Core Files

    #df -h

    > system diag show disk

    Regards,

  • Hello Carlos,

    Thank you for the follow-up.

    Please open a case with Support and share the Case ID with me so I can follow up.

    Regards,