User's Manual Part 4

Log Page 87
Log>Automation
Click Log, and then Automation to begin configuring the SonicWALL to send log files using
e-mail and configuring syslog servers on your network.
E-mail
1. Mail Server - to e-mail log or alert messages, enter the name or IP address of your mail server in the
Mail Server field. If this field is left blank, log and alert messages are not
e-mailed.
2. Send Log To - enter your full e-mail address in the Send log to field to receive the event log via e-
mail. Once sent, the log is cleared from the SonicWALL memory. If this field is left blank, the log is
not e-mailed.
3. Send Alerts To - enter your full e-mail address (username@mydomain.com) in the Send alerts to
field to be immediately e-mailed when attacks or system errors occur. Enter a standard e-mail
address or an e-mail paging service. If this field is left blank, e-mail alert messages are not sent.
4. Send Log / Every / At - The Send Log menu determines the frequency of log e-mail messages:
Daily, Weekly, or When Full. If the Weekly or Daily option is selected, then select the day of the
week the e-mail is sent in the Every menu. If the Weekly or the Daily option is selected, enter the
time of day when the e-mail is sent in the At field.
Syslog Servers
In addition to the standard event log, the SonicWALL can send a detailed log to an external Syslog server.
The SonicWALL Syslog captures all log activity and includes every connection source and destination IP
address, IP service, and number of bytes transferred. The SonicWALL Syslog support requires an
external server running a Syslog daemon on UDP Port 514.
Syslog Analysers such as SonicWALL ViewPoint or WebTrends Firewall Suite can be used to sort,
analyse, and graph the Syslog data.