| Advantage of analyzing Firewall logs:
|
Firewall logs reveal a lot of information on the nature of traffic coming in and going out of the firewall, allows you to plan your bandwidth requirement based on the bandwidth usage accross the firewalls. Analyzing these firewall traffic logs is vital to understand network and bandwidth usage and plays an important role in business risk assessment.
| Analyzed Firewall Log Reports:FireWall Logs/3.Cisco/FWSM
|
Cisco Firewall Log Analysis..
Reports of Firewall Service Module(FWSM) logs..
LogQuest VF can verify, analyze and generate report for Cisco FWSM Firewall logs. You need to collect FWSM firewall device logs and then verify in LogQuest VF.
Report based on the file:
FireWall Logs/3.Cisco/FWSM/Cisco_FWSM_Unknown_20040216.log
Pre-defined Log Format: Cisco/FWSM Format Date report was created: 19th October 2007
a)Report Conditions are: Condition(1)=Data: *,Column: IPs_A,Logic: Contain,Rule: Count,Reporting mode: Single Condition(2)=Data: %FWSM-6-302002,Column: FWSM - D1,Logic: Contain,Rule: Count,Reporting mode: Single Condition(3)=Data: bytes,Column: bytes_A,Logic: Contain,Rule: Count,Reporting mode: Single
Report
|
|
b)Report Conditions are: Condition(1)=Data: *,Column: IPs_A,Logic: Contain,Rule: Count,Reporting mode: Single Condition(2)=Data: *,Column: FWSM - D1,
Logic: Contain,Rule: Count,Reporting mode: Single Condition(3): Data: TCP,Column: Process,Logic: Contain,Rule: Count,Reporting mode: Single
Condition(4)=Data: ,Column: Day_1,Logic: Contain,Rule: Total Sum,Reporting mode: Single Condition(5):Data: ,Column: IPs_B,Logic: Contain, Rule: Total Sum,Reporting mode: Single
Report
|
|
c)Report Conditions are: Condition(1)=Data: *,Column: IPs_B,Logic: Contain, Rule: Count,Mode: Single Condition (2)=Data: *,Column: FWSM - D1, Logic: Contain,Rule: Count,Mode: Single Condition (3)=Data: connection,Column: Mode_2,Logic: Contain,Rule: Count,Mode: Single Condition (4)=Data: ,Column: no.interf_A,Logic: Contain,Rule: Total Sum,Mode: Single Condition (5)=Data: ,Column: Year_1,Logic: Contain, Rule: Total Sum,Mode: Single
Report
|
|
| Analyzed Firewall Log Reports:FireWall Logs/3.Cisco/PIX
|
Cisco Firewall Log Analysis..
Reports of Private Internet Exchange(PIX) logs..
LogQuest VF can verify, analyze and generate report for Cisco PIX Firewall logs. You need to collect PIX firewall device logs and then verify in LogQuest VF.
Report based on the file:
FireWall Logs/3.Cisco/PIX/PIX(20040218).log
Pre-defined Log Format: Standard Log/CiscoPIX Format Date report was created: 24th October 2007
a)Report Conditions are: Condition(1)=Data: 2004,Column: Yr-1,Logic: Contain, Rule: Count,Mode: Single Condition(2)=Data: *,Column: src-ip-a1,Logic: Contain,Rule: Count,Mode: Single Condition(3)=Data: *, Column: P-1,Logic: Contain,Rule: Count,Mode: Single
Report
|
|
b)Report Conditions are: Condition(1)=Data: *,Column: Dst-ip-1,Logic: Contain, Rule: Count,Mode: Single Condition(2)=Data: *,Column: P-1, Logic: Contain,Rule: Count,Mode: Single Condition(3)=Data: *,Column: Col17, Logic: Contain,Rule: Total Sum,Mode: Single Condition(4)=Data: *, Column: Proto-1,Logic: Contain,Rule: Total Sum,Mode: Single Condition(5)=Data: ,Column: F-1,Logic: Contain,Rule: Total Sum,Mode: Single Condition(6)=Data: ,Column: Time-1,Logic: Contain,Rule: Total Sum,Mode: Single
Report 1
|
|
Report 2
|
|
c)Report Conditions are: Condition(1)=Data: *,Column: Dst-ip-1,Logic: Contain,Rule: Count,Mode: Single Condition(2)=Data: *,Column: col-7,
Logic: Contain,Rule: Count,Mode: Single Condition(3)=Data: ,Column: col-8,Logic: Contain,Rule: Total Sum,Mode: Single Condition(4)=Data: ,Column: Proto-1,Logic: Contain,Rule: Total Sum,Mode: Single
Condition(5)=Data: ,Column: Yr-1,Logic: Contain,Rule: Total Sum,Mode: Single
Report 1
|
|
Report 2
|
|
|