Fields specific to the "l_system" log
The fields described below appear in the web administration interface of the firewall under the Monitoring > Logs - Audit logs module, in the views: All logs, VPN and System events.
pri |
Set to “5” meaning “notice” to ensure WELF compatibility. Available from: SNS v1.0.0. |
Priority | |
src |
IP address of the source host. Decimal format. Example: ”192.168.0.1” May be displayed anonymously depending on the administrator's access privileges. Available from: SNS v1.0.0. |
Source |
|
dst |
IP address of the destination host Decimal format. Example: ”192.168.0.1” Available from: SNS v1.0.0. |
Destination |
|
user |
ID of the administrator who executed the command. String of characters in UTF-8 format. Example: ”admin” May be displayed anonymously depending on the administrator's access privileges. Available from: SNS v1.0.0. |
User |
|
msg |
Reference message regarding the action. String of characters in UTF-8 format. |
Message |
|
service |
Name of the module that executed an action. ASCII character string. Example: “SSOAgent” |
Service |
|
alarmid |
Stormshield Network alarm ID Decimal format. Example: "85" |
Alarm ID |
|
tsagentname | Indicates the name of the TS agent used. String of characters in UTF-8 format. Example: tsagentname="agent_name_test" Available from: SNS v4.7.0. |