
3.12.1 Establishing the Configuration Task
Before configuring the log function, familiarize yourself with the applicable environment,
complete the pre-configuration tasks, and obtain the data required for the configuration. This
will help you complete the configuration task quickly and accurately.
Applicable Environment
The logs record the behaviors and status of the firewall to help you find security risks, analyze
attempts to violate security policies, and detect network attacks.
Pre-configuration Tasks
Before configuring the logs, complete the following tasks:
l
Configuring zones and adding interfaces to the zones
l
Configuring the interzone and enabling the firewall function in the interzone
l
Creating a basic ACL or an advanced ACL and configuring ACL rules
Data Preparation
To configure the log function, you need the following data.
No.
Data
1
Type of the log
2
IP address and port number of the session log host, and the source IP address and
source port number that the AR1200-S uses to communicate with the session log
host
3
Conditions for recording session logs, including the ACL number and the
direction
4
(Optional) Interval for exporting the attack defense logs or statistics logs
3.12.2 Enabling the Log Function on the Firewall
Procedure
Step 1
Run:
system-view
The system view is displayed.
Step 2
Run:
firewall log
{
all
|
blacklist
|
defend
|
session
|
statistics
}
enable
The log function is enabled on the firewall.
The log function can be enabled according to log types or enabled for all types of logs by using
the
all
parameter.
Huawei AR1200-S Series Enterprise Routers
Configuration Guide - Security
3 Firewall Configuration
Issue 02 (2012-03-30)
Huawei Proprietary and Confidential
Copyright © Huawei Technologies Co., Ltd.
77