
System monitoring
Page 95
FortiRecorder 2.4.2 Administration Guide
3.
To return to the list of log files, click the
Back
button.
See also
•
Displaying & sorting log columns & rows
•
Displaying & sorting log columns & rows
You can display, hide and re-order most columns — each column corresponds to a field in the
log messages — to display only relevant categories of information, in your preferred order.
To display or hide columns
1.
Go to one of the log types, such as
Monitor > Log Viewer > Event
.
2.
Double-click the row of a log file to view the log messages that it contains.
3.
Hover your mouse cursor over one of the column headings. An arrow will appear on the right
side of the heading. Click the arrow to display a drop-down menu, then hover your mouse
cursor over the
Columns
item in the menu to display a list of check boxes — one for each
column.
4.
Select which columns to hide or display:
Subtype
The category of the log message, such as
admin
for events such as
authentication or configuration changes, or
system
for events such
as disk consumption or connection failures.
When in raw format, this is the log’s
subtype
field.
Log ID
A dynamic log identifier within the system, not predictable, indicative
of the cause nor necessarily a unique identifier.
When in raw format, this is the log’s
log_id
field.
Message
The log message that describes the specific occurrence of a
recordable event.
For example, all logout events follow a format similar to
User admin
logout from GUI(172.16.1.5).
but the exact message varies if
the account name, connection method, and IP address are different.
When in raw format, this is the log’s
msg
field.
Setting name
Description
If you need to sort and filter the log messages based on more complex criteria, you can
download the log file as a raw or CSV-formatted file for loading into external log or spreadsheet
software (see
).