Fortinet FortiLog-400, FortiLog-100 manual Attack Type Entry and listing Level of wait interval

Models: FortiLog-100 FortiLog-400 FortiLog-800

1 124
Download 124 pages 26.49 Kb
Page 53
Image 53

Managing the FortiLog unit

Alert Email

 

 

Figure 25: Device alert settings

Alert Name

Enter a name to identify the alert settings.

Devices to Monitor Select the device logs the FortiLog unit monitors. Expand the device groups to select individual devices.

Level

Set the level of message that the FortiLog unit monitors for. The FortiLog

 

unit sends alert email for all messages at and above the logging severity

 

level you select.

Level wait interval Set the number of events and the time frame. The FortiLog unit will send an alert email when the conditions are satisfied. For example, if you set the alert to three events in one hour, after three events within that time the FortiLog unit sends an alert email.

Attack Type

Set the type of attack that the FortiLog device should look for. Select any

 

attack or specific attack identifiers.

Attack Type Entry and listing

Level of wait interval

When you select “Just these” for the attack type, enter the names of the virus and select Insert.

Set the number of attacks and the time frame. The FortiLog unit will not send an alert email until the conditions are met.

FortiLog Administration Guide

05-16000-0082-20050115

53

Page 53
Image 53
Fortinet FortiLog-400, FortiLog-100, FortiLog-800 manual Attack Type Entry and listing Level of wait interval