Viewing The Attack Log - Fortinet FortiGate Series Administration Manual

Hide thumbs Also See for FortiGate Series:
Table of Contents

Advertisement

Viewing Log and Archive Statistics

Viewing the Attack Log

132
From the Statistics section of the System Status page, you can view statistics about the
network attacks that the FortiGate unit has stopped. You can view statistics about viruses
caught, attacks detected, spam email detected, and URLs blocked. You can also view
information about sessions matched by DLP rules. You can select the Details link beside
each attack type to view more information.
You can select Reset on the header of the Statistics section to clear the DLP archive and
attack log information and reset the counts to zero.
Viewing viruses caught
1 Go to System > Status > Dashboard.
2 In the Attack Log section, select Details for AV.
Date and Time
From
To
Service
Virus
Viewing attacks blocked
1 Go to System > Status > Dashboard.
2 In the Attack Log section, select Details for IPS.
Date and Time
From
To
Service
Attack
Viewing spam email detected
1 Go to System > Status > Dashboard.
2 In the Attack Log section, select Details for Spam.
Date and Time
From->To IP
From->To Email Accounts
Service
SPAM Type
Viewing URLs blocked
1 Go to System > Status > Dashboard.
2 In the Attack Log section, select Details for Web.
Date and Time
From
URL Blocked
The time when the virus was detected.
The sender's email address or IP address.
The intended recipient's email address or IP address.
The service type, such as POP or HTTP.
The name of the virus that was detected.
The time that the attack was detected.
The source of the attack.
The target host of the attack.
The service type.
The type of attack that was detected and prevented.
The time that the spam was detected.
The sender and intended recipient IP addresses.
The sender and intended recipient email addresses.
The service type, such as SMTP, POP or IMAP.
The type of spam that was detected.
The time that the attempt to access the URL was detected.
The host that attempted to view the URL.
The URL that was blocked.
FortiGate Version 4.0 MR1 Administration Guide
System Status
01-410-89802-20090903
http://docs.fortinet.com/
Feedback

Advertisement

Table of Contents
loading

Table of Contents