222
Defining your security environment
Controlling full application inspection of traffic
Related information
None.
Creating trace files of NNTP connections
When troubleshooting NNTP connections, you can configure the security gateway to create a separate
log file for only NNTP connections. You may want to do this if you want to track what is happening to
NNTP packets as they pass through the security gateway, or you might simply want an audit trail for
all NNTP connections.
Note:
The NNTP trace file is normally written to /var/log/sg/nntpd.log.
Prerequisites
Complete the following task before beginning this procedure:
■
“Configuring access for news feeds”
To create trace files of NNTP connections
1
In the SGMI, in the left pane, under Assets, click
Proxies
.
2
In the right pane, on the Proxies tab, click the NNTP proxy, and then click
Properties
.
3
In the Proxy Properties dialog box, on the Miscellaneous tab, check
Enable tracing
.
4
Click
OK
.
5
Optionally, do one of the following:
■
To save your configuration now and activate later, on the toolbar, click
Save
.
■
To activate your configuration now, on the toolbar, click
Activate
.
When prompted to save your changes, click
Yes
.
Related information
None.
Synchronizing security gateway time
Unlike the other proxies, which pass traffic through the security gateway, the NTP proxy lets you
synchronize the security gateway’s internal clock with an internal or a public reference time source
and act as a time server to requesting clients. Keeping the security gateway’s internal clock on current
is important to accurately track when connections are made and log files generated. It is also
important that timestamps reflect if and when intrusion attempts occurred. Synchronization is run
once to initialize the proxy.
Configuring access for the network time protocol
You can configure the NTP proxy to request and respond to time information updates. It is important
to keep systems clocks synchronized, as inaccurate time information can make it difficult to track
specific log events or attempted security breaches. After configuring the NTP proxy with the
appropriate time server information, and then running the autoconfiguration, the NTP proxy will have
the correct time. You can then point internal time clients to the security gateway and have it answer
time requests.
Prerequisites
None.
Summary of Contents for Security 5600 Series, Security 5400 Series,Clientless VPN 4400 Series
Page 76: ...76 Managing administrative access Enabling SSH for command line access to the appliance...
Page 242: ...242 Defining your security environment Controlling full application inspection of traffic...
Page 243: ...243 Defining your security environment Controlling full application inspection of traffic...
Page 269: ...268 Limiting user access Authenticating using Out Of Band Authentication OOBA...
Page 373: ...372 Preventing attacks Enabling protection for logical network interfaces...
Page 509: ...508 Generating reports Upgrade reports...
Page 553: ...552 Advanced system settings Configuring advanced options...
Page 557: ...556 SSL server certificate management Installing a signed certificate...
Page 861: ...860 Index...