Skip to content

[BUG] Source Sophos XG are disconnected but logs are processed and logs on GUI are empty #257

@securemeit

Description

@securemeit

Describe the bug
Source "Sophos XG" are disconneted after a while but logs are processed from agent.

tail -f processed_logs.txt
2024/01/09 23:04:07.5688759 +0100 CET - 58349 logs from firewall_sophos have been processed
2024/01/09 23:04:07.5689122 +0100 CET - 5 logs from beats_linux_agent have been processed
2024/01/09 23:09:07.5693139 +0100 CET - 63980 logs from firewall_sophos have been processed
2024/01/09 23:09:07.5693556 +0100 CET - 6 logs from beats_linux_agent have been processed
2024/01/09 23:14:07.5701356 +0100 CET - 62392 logs from firewall_sophos have been processed
2024/01/09 23:14:07.5701737 +0100 CET - 8 logs from beats_linux_agent have been processed
2024/01/09 23:19:07.5710297 +0100 CET - 44 logs from beats_linux_agent have been processed
2024/01/09 23:19:07.5710533 +0100 CET - 57481 logs from firewall_sophos have been processed
2024/01/09 23:26:45.9562315 +0100 CET - 7444 logs from beats_linux_agent have been processed
2024/01/09 23:26:45.9563218 +0100 CET - 55660 logs from firewall_sophos have been processed

However logs on GUI are empty or very small.

Expected behavior
See logs on the GUI and sources are not disconneted.

Environment

  • OS: [Ubuntu 22.04]
  • Browser [Firefox, Chrome]
  • Version [v10.1.0-202312131645)]
  • Latest version of agent: {
    "master_version": "10.1.0",
    "agent_version": "10.1.2",
    "updater_version": "10.1.3",
    "redline_version": "10.1.2"
    }

Metadata

Metadata

Assignees

Labels

No labels
No labels

Type

No type

Projects

Status

✅ Done

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions