NETGEAR ProSafe SSL VPN Concentrator 25 SSL312 Reference Manual

Event Log

The SSL VPN Concentrator provides web based logging. It also provides the ability to send log messages to an external syslog server using the syslog protocol and to E-mail log files and alert messages to an E-mail address or pager. To configure syslog and event log settings, see “Log Settings” on page 8-5.

To view the SSL VPN Concentrator event log:

Click Event Log under the Monitoring menu in the left navigation menu. The Event Log window displays.

Figure 8-3

The Event Log window displays log messages in a sortable, searchable table. The SSL VPN Concentrator stores 250Kb of log data or approximately one thousand log messages. Once the log file reaches the log size limit, the log is cleared and, optionally, e-mailed to the SSL VPN Concentrator administrator.

Each event log entry displays the following information (if applicable):

Time and date of log event. The time stamp displays the date and time of log events. The time and date is displayed as “Year-Month-Day Hour:Minute:Second”. Hours are displayed in 24- hour clock format, so 2:00 PM is displayed as hour 14 in the event log. The date and time are based on the local time of the SSL VPN Concentrator, which is configured on the Date and Time screen under the System Configuration menu.

Source address. The Source IP address shows the IP address of the user or administrator that generated the log event. The source IP address may not be displayed for certain events, such as system errors.

Destination address. The destination IP address field shows the name or IP address that received the event. For example, if a user accessed an Intranet web site through the SSL VPN portal, the corresponding log entry would display the IP address or fully qualified domain name of the web site accessed.

8-4

Monitoring and Logging

v2.0, May 2007

Page 106
Image 106
NETGEAR SSL312 manual Event Log