HP VPN Firewall Appliances Access Control Command Reference

Table Of Contents
88
Syntax
session log bytes-active bytes-value
undo session log bytes-active
Default
The system does not output session logs based on the byte count threshold.
Views
System view
Default command level
2: System level
Parameters
bytes-value: Byte count threshold for session logging, in the range of 1 to 1000 megabytes.
Examples
# Set the byte count threshold for session logging to 10 megabytes.
<Sysname> system-view
[Sysname] session log byte-active 10
session log enable
Use session log enable to enable the session logging function.
Use undo session log enable to disable the specified session logging function.
Syntax
session log enable [ acl acl-number ]
undo session log enable [ acl acl-number ]
Default
Interzone session logging is disabled.
Views
Interzone view
Default command level
2: System level
Parameters
acl acl-number: Specifies an ACL by its number, in the range of 2000 to 3999. If no ACL is specified, this
command enables logging all sessions through the interzone.
Examples
# Create an interzone instance from security zone Trust to security zone Untrust, and enable interzone
session logging.
<Sysname> system-view
[Sysname] interzone source Trust destination Untrust
[Sysname-interzone-Trust-Untrust] session log enable