Log&Report
Log types
FortiGate Version 4.0 Administration Guide
01-400-89802-20090424
659
•
6
Enter the following CLI commands to add a DoS policy (called an interface policy in the
CLI) that includes the IPS Sensor.
config firewall interface-policy
edit 1
set interface <interface_name>
set srcaddr all
set dstaddr all
set service ANY
set ips-sensor-status enable
set ips-sensor <sensor_name>
end
Where
<sensor_name>
is the name of the IPS sensor added above.
Event log
The Event Log records management and activity events, such as when a configuration
has changed, or VPN and High Availability (HA) events occur.
When you are logged into VDOMs that are in Transparent mode, or if all VDOMs are in
Transparent mode, certain options may not be available such as VIP ssl event or CPU and
memory usage event. You can enable event logs only when you are logged in to a VDOM;
you cannot enable event logs in the root VDOM.
To enable the event logs
1
Go to
Log&Report > Log Config > Event Log
.
2
Select the
Enable
check box.
3
Select one or more of the following logs:
System Activity
event
All system-related events, such as ping server failure and gateway
status.
IPSec negotiation
event
All IPSec negotiation events, such as progress and error reports.
DHCP service
event
All DHCP-events, such as the request and response log.
L2TP/PPTP/PPPoE
service event
All protocol-related events, such as manager and socket creation
processes.
Admin event
All administrative events, such as user logins, resets, and configuration
updates.
HA activity event
All high availability events, such as link, member, and state information.
Firewall
authentication event
All firewall-related events, such as user authentication.
Pattern update
event
All pattern update events, such as antivirus and IPS pattern updates
and update failures.
SSL VPN user
authentication event
All user authentication events for an SSL VPN connection, such as
logging in, logging out and timeout due to inactivity.
SSL VPN
administration event
All administration events related to SSL VPN, such as SSL configuration
and CA certificate loading and removal.
SSL VPN session
event
All session activity such as application launches and blocks, timeouts,
and verifications.
VIP ssl event
All server-load balancing events happening during SSL session,
especially details about handshaking.
Содержание Gate 60D
Страница 678: ...Reports Log Report FortiGate Version 4 0 Administration Guide 678 01 400 89802 20090424 http docs fortinet com Feedback...
Страница 704: ...Index FortiGate Version 4 0 Administration Guide 704 01 400 89802 20090424 http docs fortinet com Feedback...
Страница 705: ...www fortinet com...
Страница 706: ...www fortinet com...