248
Fortinet Inc.
Recording logs
Logging and reporting
Recording logs on a remote computer
Use the following procedure to configure the FortiGate unit to record log messages on
a remote computer. The remote computer must be configured with a syslog server.
1
Go to
Log&Report > Log Setting
.
2
Select Log to Remote Host to send the logs to a syslog server.
3
Type the IP address of the remote computer running syslog server software.
4
Type the port number of the syslog server.
5
Select the severity level for which you want to record log messages.
The FortiGate will log all levels of severity down to but not lower than the level you
choose. For example, if you want to record emergency, alert, critical, and error
messages, select Error.
6
Select Config Policy.
• Select the Log type for which you want the FortiGate unit to record logs.
• For each Log type, select the activities for which you want the FortiGate unit to
record log messages.
• Select OK.
For more information on log types and activities, see
“Filtering log messages” on
page 249
and
“Configuring traffic logging” on page 251
.
7
Select Apply.
Recording logs on a NetIQ WebTrends server
Use the following procedure to configure the FortiGate unit to record logs on a remote
NetIQ WebTrends firewall reporting server for storage and analysis. FortiGate log
formats comply with WebTrends Enhanced Log Format (WELF) and are compatible
with WebTrends NetIQ Security Reporting Center 2.0 and Firewall Suite 4.1. See the
Security Reporting Center and Firewall Suite documentation for more information.
To record logs on a NetIQ WebTrends server:
1
Go to
Log&Report > Log Setting
.
2
Select Log in WebTrends Enhanced Log Format.
3
Type the IP address of the NetIQ WebTrends firewall reporting server.
4
Select the severity level for which you want to record log messages.
The FortiGate will log all levels of severity down to but not lower than the level you
choose. For example, if you want to record emergency, alert, critical, and error
messages, select Error.
5
Select Config Policy.
To configure the FortiGate to filter the types of logs and events to record, use the
procedures in
“Filtering log messages” on page 249
and
“Configuring traffic logging”
on page 251
.
6
Select Apply.
Note:
FortiGate traffic log messages include sent and received fields, which are optional but
required for drawing a WebTrends graph.
Содержание FortiGate 60R
Страница 12: ...Contents 12 Fortinet Inc...
Страница 26: ...26 Fortinet Inc Customer service and technical support Introduction...
Страница 42: ...42 Fortinet Inc Next steps Getting started...
Страница 106: ...106 Fortinet Inc Registering a FortiGate unit after an RMA Virus and attack definitions updates and registration...
Страница 138: ...138 Fortinet Inc Customizing replacement messages System configuration...
Страница 228: ...228 Fortinet Inc Logging attacks Network Intrusion Detection System NIDS...
Страница 242: ...242 Fortinet Inc Exempt URL list Web filtering...
Страница 256: ...256 Fortinet Inc Configuring alert email Logging and reporting...
Страница 260: ...260 Fortinet Inc Glossary...
Страница 270: ...270 Fortinet Inc Index...