HP VPN Firewall Appliances System Management and Maintenance Configuration Guide
92
Item Descri
p
tion
Log Host IP
Address
Log Host 1
Set the address (IPv4 address, host name, or IPv6 address), port number and the
VPN instance (this option is available only when you specify a log host with an
IPv4 address or a host name) of the syslog log host.
You can report log information to log hosts in the format of syslog. You can
specify up to four syslog log hosts.
Log Host 2
Log Host 3
Log Host 4
Refresh Period
Select the refresh mode for the log report Web page.
• If you select Manual, click Refresh to refresh the Web page.
• If you select a specific refresh period (5 minutes, for example), the system
automatically refreshes the Web page every 5 minutes.
Table 15 Value range for the Log Buffer Size argument
Hardware Value ran
g
e Default value
F1000-A-EI/F1000-S-EI
0 to 1024
512
F1000-E
0 to 65535
65535
F5000
0 to 65535
65535
F5000-S/F5000-C 0 to 65535 65535
VPN Firewall Module
0 to 65535
65535
F1000-A-EI/F1000-S-EI
0 to 65535
65535
To clear syslog messages:
1. Select Log Report > Syslog from the navigation tree to enter the page as shown in Figure 32.
2. Click Clear Log.
The system cl
ears all syslog messages, including system logs, connection limit logs, attack
prevention logs, blacklist logs, and interzone policy logs.
User logging (flow logging) overview
To generate user logs, configure session logging (see Configuring session logging).
User logging records users' access information to the external network. The device classifies flows based
on 5-tuple information, including the source IP address, destination IP address, source port, destination
port, and protocol number. User logging records the 5-tuple information of the packets and number of
the bytes received and sent. With user logging, administrators can track and record accesses to the
network.
You can output user logs in one of the following formats:
• Output logs to the information center in the format of system information. The information center
determines the output destination.
• Output logs to a log host in UDP packets in binary format.
Two versions are available with user logging: version 1.0 and version 3.0, which are slightly different in
packet format. For more information about packet formats, see Table 16 and Table 17.