Fields specific to the "l_server" log
The fields described below appear in the web administration interface of the firewall under the Monitoring > Logs - Audit logs module, in the views: All logs .
error |
Command’s return code number Example: “0”, “3”… |
State Example: “ok”, “Auth failed”… |
|
user |
ID of the administrator who executed the command. String of characters in UTF-8 format. Example: ”admin” May be displayed anonymously depending on the administrator's access privileges. Available from: SNS v1.0.0. |
User |
|
address |
IP address of the client workstation that initiated the connection. Decimal format. Example: address=192.168.0.2 |
Source |
|
sessionid |
Session ID number allowing simultaneous connections to be differentiated. Example: "18" |
Session Example: "01.0018" |
|
msg |
Executed command accompanied by its parameters where applicable. String of characters in UTF-8 format. Example: “CONFIG FILTER ACTIVATE” |
Message |
|
domain |
Authentication method used or LDAP directory of the user authenticated by the firewall. String of characters in UTF-8 format. Example: domain="documentation.stormshield.eu" Available from: SNS v3.0.0. |
Method or directory |