ZyWALL 10/50 Internet Security Gateway

Table 20-3 System Maintenance Menu Syslog Parameters

PARAMETER

DESCRIPTION

 

 

Filter log

No filters are logged when this field is set to No. Filters with the individual filter Log

 

Filter field set to Yes (Menu 21.x.x).) are logged when this field is set to Yes.

PPP log

PPP events are logged when this field is set to Yes.

 

 

Firewall log

When set to Yes, the ZyWALL sends the firewall log to a syslog server.

 

 

When finished configuring this screen, press [ENTER] to confirm or [ESC] to cancel.

Your ZyWALL sends five types of syslog messages. Some examples (not all ZyWALL specific) of these syslog messages with their message formats are shown next:

1.CDR

CDR Message Format

SdcmdSyslogSend( SYSLOG_CDR, SYSLOG_INFO, String );

String = board xx line xx channel xx, call xx, str

board = the hardware board ID line = the WAN ID in a board Channel = channel ID within the WAN

call = the call reference number which starts from 1 and increments by 1 for each new call str = C01 Outgoing Call dev xx ch xx (dev:device No. ch:channel No.)

L02 Tunnel Connected(L2TP)

C02 OutCall Connected xxxx (means connected speed) xxxxx (means Remote Call Number) L02 Call Terminated

C02 Call Terminated

Jul 19 11:19:27 192.168.102.2 ZyXEL: board 0 line 0 channel 0, call 1, C01 Outgoing Call dev=2 ch=0 40002

Jul 19 11:19:32 192.168.102.2 ZyXEL: board 0 line 0 channel 0, call 1, C02 OutCall Connected 64000 40002

Jul 19 11:20:06 192.168.102.2 ZyXEL: board 0 line 0 channel 0, call 1, C02 Call Terminated

2.Packet triggered

Packet triggered Message Format

sdcmdSyslogSend( SYSLOG_PKTTRI, SYSLOG_NOTICE, String ); String = Packet trigger: Protocol=xx Data=xxxxxxxxxx…..x

Protocol: (1:IP 2:IPX 3:IPXHC 4:BPDU 5:ATALK 6:IPNG)

Data: We will send forty-eight Hex characters to the server

Jul 19 11:28:39 192.168.102.2 ZyXEL: Packet Trigger: Protocol=1,

20-8

System Information & Diagnosis