When Does The P-660 Generate The Firewall Alert; What Does The Alert Show To Us; What Is The Difference Between The Log And Alert - ZyXEL Communications P-660R-T1 Support Notes

Hide thumbs Also See for P-660R-T1:
Table of Contents

Advertisement

P-660 series Support Notes
2. View the log by CI command: sys logs disp
You can also view Centralized logs via mail or syslog, please configure mail server or
Unix Syslog server in Advanced/Logs/Log Settings.

4. When does the P-660 generate the firewall alert?

The P-660 generates the alert when an attack is detected by the firewall and sends it
via Email. So, to send the alert you must configure the mail server and Email address
using Web Configurator. You can also specify how frequently you want to receive the
alert via Web Configurator.

5. What does the alert show to us?

The alert shown in the Email is actually the evens of the attack. So, the Reason
column shows Attack and the attack type. Please see the example shown below.
# Time
Packet Information
Reason
Action
127|Mar 15 0 |From:192.168.1.1 To:192.168.1.1 |attack |block
| 03:04:54|ICMP
type:00008
code:00000 |
|
land

6. What is the difference between the log and alert?

A log entry is just added to the log inside the P-660 and e-mailed together with all
other log entries at the scheduled time as configured. An alert is e-mailed immediately
after an attacked is detected.
24
All contents copyright © 2005 ZyXEL Communications Corporation.

Advertisement

Table of Contents
loading

Table of Contents