12.03.2015 Views

FortiGate Administration Guide - FirewallShop.com

FortiGate Administration Guide - FirewallShop.com

FortiGate Administration Guide - FirewallShop.com

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Log&Report<br />

Log types<br />

Pattern update<br />

event<br />

SSL VPN user<br />

authentication<br />

event<br />

SSL VPN<br />

administrator event<br />

SSL VPN session<br />

event<br />

3 Select Apply.<br />

The <strong>FortiGate</strong> unit logs all pattern update events, such as antivirus<br />

and IPS pattern updates and update failures.<br />

The <strong>FortiGate</strong> unit logs all user authentication events for an SSL<br />

VPN connection, such as logging in, logging out and timeout due to<br />

inactivity.<br />

The <strong>FortiGate</strong> unit logs all administrator events related to SSL<br />

VPN, such as SSL configuration and CA certificate loading and<br />

removal.<br />

The <strong>FortiGate</strong> unit logs all session activity such as application<br />

launches and blocks, timeouts, verifications and so on.<br />

Antivirus log<br />

The Antivirus Log records virus incidents in Web, FTP, and email traffic. For<br />

example, when the <strong>FortiGate</strong> unit detects an infected file, blocks a file type, or<br />

blocks an oversized file or email that is logged, an antivirus log is recorded. You<br />

can apply the following filters:<br />

Viruses<br />

Blocked Files<br />

Oversized Files/<br />

Emails<br />

AV Monitor<br />

The <strong>FortiGate</strong> unit logs all virus infections.<br />

The <strong>FortiGate</strong> unit logs all instances of blocked files.<br />

The <strong>FortiGate</strong> unit logs all instances of files and email messages<br />

exceeding defined thresholds.<br />

The <strong>FortiGate</strong> unit logs all instances of viruses, blocked files, and<br />

oversized files and email. This applies to HTTP, FTP, IMAP, POP3,<br />

SMTP, and IM traffic.<br />

To enable antivirus logs<br />

1 Go to Firewall > Protection Profile.<br />

2 Select the Edit icon beside the protection profile to enable logging of antivirus<br />

events.<br />

3 Select the blue arrow to expand the Logging options.<br />

4 Select the antivirus events you want logged.<br />

5 Select OK.<br />

Web filter log<br />

The Web Filter Log records HTTP FortiGuard log rating errors including web<br />

content blocking actions.<br />

To enable web filter logs<br />

1 Go to Firewall > Protection Profile.<br />

2 Select edit for a protection profile.<br />

3 Select the blue arrow to expand the Logging options.<br />

4 Select the web filtering events to log.<br />

5 Select the FortiGuard Web Filtering Log rating errors (HTTP only), to log<br />

FortiGuard filtering.<br />

6 Select OK.<br />

<strong>FortiGate</strong> Version 3.0 MR5 <strong>Administration</strong> <strong>Guide</strong><br />

01-30005-0203-20070830 483

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!