HP VPN Firewall Appliances System Management and Maintenance Configuration Guide

107
Item Descri
p
tion
Start Time
Time when the flow was created.
End Time
Time when the flow was removed.
Source Zone
Source zone of the flow.
Destination Zone
Destination zone of the flow.
Policy ID
ID of the interzone policy that the flow matched.
Action Action taken against the flow, permitted or denied.
Protocol Type Protocol type of the flow.
Flow Information
Flow information:
If the protocol type is TCP or UDP, the displayed flow information is source IP
address:source port-->destination IP address:destination port, for example,
1.1.1. 2 :10 26 - - > 1.1. 2 .10 : 6 9.
If the protocol type is ICMP, the displayed flow information is source IP
address-->destination IP address, ICMP type (ICMP code), for example,
1.1.1. 2- - > 1.1. 2.10 , e c h o ( 8 ) .
If the protocol type is another type except these three, the displayed flow
information is source IP address-->destination IP address, for example,
1.1.1. 2 - - > 1.1. 2.10 .
Displaying user logs (flow logging)
This section describes how to view the userlog in the Web interface. For information about viewing the
userlog at the CLI, see "Displaying and maintaining user logging."
To display use
r logs through the Web interface, configure outputting user logs to the information center.
Select Log Report > Report > Userlog from the navigation tree to enter the page for displaying user logs.
If you select the 1.0 option, the user logging information is displayed, as shown in Figure 44. If y
ou selec
t
the 3.0 option, the user logging 3.0 information is displayed, as shown in Figure 45.
Figure 44 User logging 1.0 log report