User Guide

Table Of Contents
Bridge GUI Guide: Security Configuration
160
of the page, then Configure -> Logging/Auditing from the
menu on the left.
2 In the Logging/Auditing screen’s Global Logging Settings
frame:
In Auditing - click Enabled to turn audit logging on.
In Remote Log Storage - click Enabled to direct the
Bridge to use the network syslog server.
In Remote Log Host - enter the IP address of the syslog
server.
In Severity of Messages Retained - select from the
dropdown the minimum severity level for which
messages will be sent to the external audit log.
At the default setting of
Critical, for example, the Bridge
will send only those messages at the
Critical severity
level, and not those at lower levels of severity (
Warning,
Error, and Informational messages).
3 Click APPLY in the upper right of the screen (or RESET
screen settings to cancel your changes).
Audit logging is
Enabled by default, but the external syslog
server function is
Disabled and no Remote Log Host is
configured.
Disable audit logging by selecting
Disabled in Auditing.
4.6.2 Administrative Audit Logging
NOTE: Individual
administrative ac-
counts’
Audit settings
(refer to Section 2.2.2.4)
override all other audit
logging settings, and the
audit settings associated
with a given MAC ad-
dress (Section 4.6.2.3)
override those in
Global
Auditing Settings.
You can globally configure the way in which administrative
activity on the Bridge is filtered for audit logging.
Global settings will apply to an administrative session only
when the
Audit setting for the administrator’s individual account
is set to
Auto (refer to Section 2.2.2.4). At the default Audit
setting of
Required, all activity on an administrative account is
sent to the audit log without regard to global settings.
Additionally, the settings that filter administrative events by
User Interface, Fortress Security and Interface Type (sections
4.6.2.1 and 4.6.2.2) will apply only when the administrator is
logged on from a MAC address that is not itself subject to the
separately configured
MAC Auditing Settings (Section 4.6.2.3).
If an administrator logs on from a listed MAC address, the audit
logging configuration for that MAC address is applied.
Finally, audit logging must be enabled and an external syslog
server configured on the Bridge before events can be sent to
the audit log (refer to Section 4.6.1).