sk181209 - SmartView reports show "No data found" in some widgets
SmartView reports show "No data found" in some widgets
Symptoms
- SmartView reports show the message "
No data found" in some widgets.
Example:
Cause
Log Indexer fails to extract the data because of long lines in the $INDEXERDIR/data/FetchedFiles file.
Solution
This problem was fixed. The fix is included starting from:
- Check Point Quantum R82
- Jumbo Hotfix Accumulator for R81.20 starting from Take 101
- Jumbo Hotfix Accumulator for R81.10 starting from Take 177
Check Point recommends to always upgrade to the most recent version.
If you choose not to upgrade:
Close all SmartConsole windows that are connected to the SmartEvent Server / Management Server that stores the traffic log files.
Download this script to your computer.
Copy this script from your computer to the SmartEvent Server / Management Server that stores the traffic log files (to some directory, for example,
/var/log/).Connect to the command line on the SmartEvent Server / Management Server that stores the traffic log files.
Log in to the Expert mode.
Back up the current FetchedFiles file:
cp -v $INDEXERDIR/data/FetchedFiles{,_BKP}
- Go to the directory, where you uploaded the script:
cd /<path to directory with script>/
- Assign the relevant permissions to the script:
chmod -v 777 clearFetchedFiles.py
- Run the script:
- On a SmartEvent Server / Security Management Server:
python3 clearFetchedFiles.py
- On a Multi-Domain Security Management Server:
python3 clearFetchedFiles.py <Name_of_Domain1> <Name_of_Domain2> ... <Name_of_DomainN>
Note!
If you do not specify any Domain, then the script automatically runs for all Domain and for the Global Indexer.
Make sure you run the script from the MDS level and not from the domain level, run: mdsenv
and only then go to the directory with the script to execute it.
10. The script output will show by how much it decreased the size of the $INDEXERDIR/data/FetchedFiles file.
- If the file size did not decrease, then either the long line entries in the file are less than 30 days old, or there are no long line entries.
- If the long line entries in the file are less than 30 days old, then you can modify the age threshold in the script: 1. Edit the script:
vi clearFetchedFiles.py
In Line 10, in the variable "
timedelta(30)", change the value from 30 to a smaller integer number.Save the changes in the file and exit Vi editor.
Run the script again: - On a SmartEvent Server / Security Management Server:
python3 clearFetchedFiles.py
On a Multi-Domain Security Management Server:
`python3 clearFetchedFiles.py <Name_of_Domain1> <Name_of_Domain2> ... <Name_of_DomainN>`
NOTE
This solution has been verified for the specific scenario, described by the combination of Product, Version and Symptoms. It may not work in other scenarios.
Article Properties
Access Level: General
Status: Approved by TAC
Date Created: 2023-07-05
Last Modified: 2026-06-16