Using Schema Information - Juniper NETWORK AND SECURITY MANAGER 2010.2 - ADMINISTRATION GUIDE REV1 Administration Manual

Table of Contents

Advertisement

Network and Security Manager Administration Guide

Using Schema Information

680
Table 81: Management System Utilities (continued)
Name
xdbAuditLogConverter.sh
In NSM, enhancements to the audit log exporter tool allow you to:
Invoke detailed help messages from the audit log exporter tool with
./.xdbAuditLogConverter- - help
Use - -showdiff to view audit log details before and after a modification. This feature
is only supported on objects such as addresses, NAT, VLAN objects, access profiles,
VSYS profiles and so on. It is not supported on policies.
View details about modifications to objects (add, delete, modify actions) in the audit
log output. For example,
ACTION=delete,ADMIN=super,DEVICE=,TARGET=addressObj/address/global,TIME=Tue
Dec 30 11:02:49 2008
Filter exported audit log data according to Date/Time and Date/Time Range, Device,
Action, Admin, Domain, Working Domain. Multiple filters are also allowed. For example,
./.xdbAuditLogConverter <xdb path> <csv|syslog> [CSV full filepath | Remote IP
Address] - -domain=<domain id> - -device =<device name>
From NSM, you can select Schema Information to view current and running schema and
update schema for devices whose schema are defined using XML.
Description
Exports Audit Log data to a csv file or Syslog server.
CSV Command Usage:
For csv file, issue the
command:
csv
<xdb root> csv [csv full file path]
For example,
. /xdbAuditLogConverter.sh
/usr/netscreen/GuiSvr/var/xdb csv /tmp/audit.csv
This creates a file called
audit.csv
logs in csv format. If the csv file path is not specified, audit logs in
csv format are written to a default file called
current directory.
Syslog Command Usage:
To export data to a Syslog server, issue the
/xdbAuditLogConverter.sh <xdb root> syslog [remote IP Address]
For example,
./xdbAuditLogConverter.sh
/usr/netscreen/GuiSvr/var/xdb syslog 172.23.9.94
If you want to syslog to the host machine on which you are running
this command, do not specify an IP address. For example,
./xdbAuditLogConverter.sh /usr/netscreen/GuiSvr/var/xdb syslog
Copyright © 2010, Juniper Networks, Inc.
./xdbAuditLogConverter.sh
/tmp
in the
directory with audit
auditlog.csv
in the
command:
syslog
.

Advertisement

Table of Contents
loading

This manual is also suitable for:

Network and security manager 2010.2

Table of Contents