
By default, no condition is configured in an interzone for recording session logs.
----End
3.12.4 Checking the Configuration
After the log function is configured on the firewall, you can view information about the logs.
Procedure
l
Run the
display firewall log configuration
command to view information about the logs
on the firewall.
----End
Example
Run the
display firewall log configuration
command to view information about the logs on the
firewall.
<Huawei>
display firewall log configuration
defend log :
status : enabled
log-interval : 30 s
statistics log :
status : enabled
log-interval : 30 s
blacklist log :
status : enabled
log-interval : 30 s
session log :
status : enabled
log-interval : 30 s
nat-session : disabled
binary-log host :
host source VPN instance-name
----:-- ----:-- ---
3.13 Maintaining the Firewall
3.13.1 Displaying the Firewall Configuration
Procedure
l
Run the
display firewall zone
[
zone-name
] | [
interface
|
priority
] command to view the
configurations of all zones or the specified zone.
l
Run the
display firewall interzone
[
zone-name1
zone-name2
] command to view the
configurations of the interzone.
l
Run the
display firewall blacklist configuration
command to view the status of the
blacklist function.
l
Run the
display firewall blacklist
{
all
|
ip-address
[
vpn-instance
vpn-instance-name
] |
dynamic
|
static
|
vpn-instance
vpn-instance-name
} command to view the blacklist
entries.
Huawei AR1200-S Series Enterprise Routers
Configuration Guide - Security
3 Firewall Configuration
Issue 02 (2012-03-30)
Huawei Proprietary and Confidential
Copyright © Huawei Technologies Co., Ltd.
79