Recording Logs On A Netiq Webtrends Server; Filtering Log Messages - Fortinet FortiGate FortiGate-50R Installation And Configuration Manual

Antivirus firewall
Table of Contents

Advertisement

Filtering log messages

Recording logs on a NetIQ WebTrends server

Filtering log messages
222
5
Select the severity level for which you want to record log messages.
The FortiGate will log all levels of severity down to but not lower than the level you
choose. For example, if you want to record emergency, alert, critical, and error
messages, select Error.
6
Select Config Policy.
Select the Log type for which you want the FortiGate unit to record logs.
For each Log type, select the activities for which you want the FortiGate unit to
record log messages.
Select OK.
For more information on log types and activities, see
page 222
and
"Configuring traffic logging" on page
7
Select Apply.
Use the following procedure to configure the FortiGate unit to record logs on a remote
NetIQ WebTrends firewall reporting server for storage and analysis. FortiGate log
formats comply with WebTrends Enhanced Log Format (WELF) and are compatible
with WebTrends NetIQ Security Reporting Center 2.0 and Firewall Suite 4.1. See the
Security Reporting Center and Firewall Suite documentation for more information.
Note: FortiGate traffic log messages include sent and received fields, which are optional but
required for drawing a WebTrends graph.
To record logs on a NetIQ WebTrends server:
1
Go to Log&Report > Log Setting.
2
Select Log in WebTrends Enhanced Log Format.
3
Type the IP address of the NetIQ WebTrends firewall reporting server.
4
Select the severity level for which you want to record log messages.
The FortiGate will log all levels of severity down to but not lower than the level you
choose. For example, if you want to record emergency, alert, critical, and error
messages, select Error.
5
Select Config Policy.
To configure the FortiGate to filter the types of logs and events to record, use the
procedures in
"Filtering log messages" on page 222
on page
224.
6
Select Apply.
You can configure which logs to record and which message categories to record in
each log.
1
Go to Log&Report > Log Setting.
2
Select Config Policy for the log location that you selected in
page
221.
Logging and reporting
"Filtering log messages" on
224.
and
"Configuring traffic logging"
"Recording logs" on
Fortinet Inc.

Advertisement

Table of Contents
loading

This manual is also suitable for:

Fortigate 50r

Table of Contents