Configuring reports

Reports

 

Alias

Select the appropriate alias from the drop-down list. See

 

 

Configuring IP alias on page 50 for more information about

 

 

configuring IP aliases.

 

 

You can filter on IP ranges or subnets. For example:

 

 

172.20.110.0-255 matches all IP addresses in the

 

 

172.20.110.0/255.255.255.0 or 172.20.120.110/24

 

 

172.20.110.0-140.255 matches all IP addresses from

 

 

172.20.110.0 to 172.20.140.255

 

 

172.16.0.0-20.255.255 matches all IP addresses from

 

 

172.16.0 to 172.20.255.255

 

not

Select to instead include only log messages that do not match

 

 

this criterion. For example, you might include logs except

 

 

those matching a specific source IP address.

Destination(s)

Enter the destination IP address to include matching logs, or select

 

from the Alias list. Separate multiple sources with a comma. See

 

“Configuring IP aliases” on page 61 for more information about

 

configuring IP aliases.

 

Alias

Select the appropriate alias. Select the appropriate alias from

 

 

the drop-down list. See Configuring IP alias on page 50 for

 

 

more information about configuring IP aliases.

 

 

You can filter on IP ranges or subnets. For example:

 

 

172.20.110.0-255 matches all IP addresses in the

 

 

172.20.110.0/255.255.255.0 or 172.20.120.110/24

 

 

172.20.110.0-140.255 matches all IP addresses from

 

 

172.20.110.0 to 172.20.140.255

 

 

172.16.0.0-20.255.255 matches all IP addresses from

 

 

172.16.0 to 172.20.255.255

 

not

Select to instead include only log messages that do not match

 

 

this criterion. For example, you might include logs except

 

 

those matching a specific destination IP address.

Interface(s)

Enter the network interface or interfaces to include matching logs.

 

Separate multiple interface names with a comma

 

not

Select “not” to instead include only log messages that do not

 

 

match this criterion. For example, you might include logs

 

 

except those matching a specific network interface.

Policy ID(s)

Enter the FortiGate firewall Policy ID numbers to include matching

 

logs. The report will include logs from all FortiGate log files containing

 

firewall policy ID numbers, which excludes event and content archive

 

logs. Separate multiple policy IDs with a comma.

 

not

Select to instead include only log messages that do not match

 

 

this criterion. For example, you might include logs except

 

 

those matching a specific policy ID.

Service(s)

Enter specific services to include matching logs. Separate multiple

 

services with a comma.

 

not

Select “not” to instead include only log messages that do not

 

 

match this criterion. For example, you might include logs

 

 

except those matching a specific service.

Day of the Week

Select specific days of the week to include matching logs.

FortiAnalyzer Version 3.0 MR7 Administration Guide

124

05-30007-0082-20080908

Page 128
Image 128
Fortinet 3.0 MR7 manual Destinations, Interfaces, Policy IDs, Day of the Week