User Guide
117
Report sections and consolidated sections
Denied Outgoing Packet Detail
A list of denied outgoing packets, sorted by time. The fields are Date, Time,
Type, Client, Client Port, Server, Server Port, Protocol, and Duration.
Denied Incoming Packet Detail
A list of denied incoming packets, sorted by time. The fields are Date, Time,
Type, Client, Client Port, Server, Server Port, Protocol, and Duration.
Denied Packet Summary
Multiple tables, each representing data on a particular host originating denied
packets. Each table includes time of first and last attempt, type, server, port,
protocol, and number of attempts. If there is only one attempt, the Last field is
blank.
Denied Service Detail
A list of times a service was attempted to be used but was denied. The detail
does not differentiate between Incoming and Outgoing.
WebBlocker Detail
A list of URLs denied due to WebBlocker implementation, sorted by time. The
fields are Date, Time, User, Web Site, Type, and Category.
Denied Authentication Detail
A detailed list of failures to authenticate, sorted by time. The fields are Date,
Time, Host, and User.
Consolidated Sections
Network Statistics
A summary of statistics on one or more log files for all devices being
monitored.
Time Summary – Packet Filtered
A table, and optionally a graph, of all accepted connections distributed along
user-defined intervals and sorted by time. If you chose the entire log file or
specific time parameters, the default time interval is daily. Otherwise, the time
interval is based on your selection.
Host Summary – Packet Filtered
A table, and optionally a graph, of internal and external hosts passing packet-
filtered traffic, sorted either by bytes transferred or number of connections.
Service Summary
A table, and optionally a graph, of traffic for all services sorted by connection
count.
Session Summary – Packet Filtered
A table, and optionally a graph, of the top incoming and outgoing sessions,
sorted either by byte count or number of connections. The format of the
session is: client -> server : service. If the connection is proxied, the service is
represented in all capital letters. If the connection is packet filtered, Historical
Summary of Contents for Firebox FireboxTM System 4.6
Page 1: ...WatchGuard Firebox System User Guide Firebox System 4 6 ...
Page 16: ...6 ...
Page 20: ...LiveSecurity broadcasts 10 ...
Page 44: ...LiveSecurity Event Processor 34 ...
Page 52: ...Defining a Firebox as a DHCP server 42 ...
Page 68: ...Service precedence 58 ...
Page 78: ...Configuring a service for incoming static NAT 68 ...
Page 92: ...Establishing an OOB connection 82 ...
Page 94: ...84 ...
Page 112: ...HostWatch 102 ...
Page 118: ...Working with log files 108 ...
Page 130: ...120 ...
Page 158: ...Configuring debugging options 148 ...