20
01-28007-0144-20041217
Fortinet Inc.
Document conventions
Introduction
Logging and reporting
The FortiGate unit supports logging for various categories of traffic and configuration
changes. You can configure logging to:
• report traffic that connects to the firewall,
• report network services used,
• report traffic that was permitted by firewall policies,
• report traffic that was denied by firewall policies,
• report events such as configuration changes and other management events,
IPSec tunnel negotiation, virus detection, attacks, and web page blocking,
• report attacks detected by the IPS,
• send alert email to system administrators to report virus incidents, intrusions, and
firewall or VPN events or violations.
Logs can be sent to a remote syslog server or a WebTrends NetIQ Security Reporting
Center and Firewall Suite server using the WebTrends enhanced log format. Some
models can also save logs to an optional internal hard drive. If a hard drive is not
installed, you can configure most FortiGate units to log the most recent events and
attacks detected by the IPS to the system memory.
Document conventions
This guide uses the following conventions to describe CLI command syntax.
• Angle brackets
< >
to indicate variables.
For example:
execute restore config <filename_str>
You enter:
execute restore config myfile.bak
<xxx_str>
indicates an ASCII string that does not contain new-lines or carriage
returns.
<xxx_integer>
indicates an integer string that is a decimal (base 10) number.
<xxx_octet>
indicates a hexadecimal string that uses the digits 0-9 and letters
A-F.
<xxx_ipv4>
indicates a dotted decimal IPv4 address.
<xxx_v4mask>
indicates a dotted decimal IPv4 netmask.
<xxx_ipv4mask>
indicates a dotted decimal IPv4 address followed by a dotted
decimal IPv4 netmask.
<xxx_ipv6>
indicates a dotted decimal IPv6 address.
<xxx_v6mask>
indicates a dotted decimal IPv6 netmask.
<xxx_ipv6mask>
indicates a dotted decimal IPv6 address followed by a dotted
decimal IPv6 netmask.
Содержание FortiGate FortiGate-60M
Страница 12: ...Contents 12 01 28007 0144 20041217 Fortinet Inc Index 369 ...
Страница 43: ...System status Changing the FortiGate firmware FortiGate 60M Administration Guide 01 28007 0144 20041217 43 ...
Страница 44: ...44 01 28007 0144 20041217 Fortinet Inc Changing the FortiGate firmware System status ...
Страница 74: ...74 01 28007 0144 20041217 Fortinet Inc FortiGate IPv6 support System network ...
Страница 82: ...82 01 28007 0144 20041217 Fortinet Inc Dynamic IP System DHCP ...
Страница 116: ...116 01 28007 0144 20041217 Fortinet Inc Access profiles System administration ...
Страница 234: ...234 01 28007 0144 20041217 Fortinet Inc Protection profile Firewall ...
Страница 246: ...246 01 28007 0144 20041217 Fortinet Inc CLI configuration Users and authentication ...
Страница 278: ...278 01 28007 0144 20041217 Fortinet Inc CLI configuration VPN ...
Страница 340: ...340 01 28007 0144 20041217 Fortinet Inc Using Perl regular expressions Spam filter ...
Страница 358: ...358 01 28007 0144 20041217 Fortinet Inc CLI configuration Log Report ...
Страница 376: ...376 01 28007 0144 20041217 Fortinet Inc Index ...