I am trying to figure out the reason why our http access log shows a gap in http requests, while our firewall shows some activity during the gap.
In other words, http log shows no activity from 19:25:21 to 19:25:27, while firewall shows connections during this time.
Here is my question.
In the pattern that we set in AccessLogValve, what is actually %t ? Is it the http request received time or http response sent time?