Fields specific to the "l_system" log

The fields described below appear in the web administration interface of the firewall under the Monitoring > Logs - Audit logs module, in the views: All logs, VPN and System events.

pri

Set to “5” meaning “notice” to ensure WELF compatibility.

Available from: SNS v1.0.0.

Priority

src

IP address of the source host.

Decimal format. Example: ”192.168.0.1

May be displayed anonymously depending on the administrator's access privileges.

Available from: SNS v1.0.0.

Source

dst

IP address of the destination host

Decimal format. Example: ”192.168.0.1

Available from: SNS v1.0.0.

Destination

user

ID of the administrator who executed the command.

String of characters in UTF-8 format. Example: ”admin

May be displayed anonymously depending on the administrator's access privileges.

Available from: SNS v1.0.0.

User

msg

Reference message regarding the action.

String of characters in UTF-8 format.
Example: “Agent (ssoagent) is active

Message

service

Name of the module that executed an action.

ASCII character string. Example: “SSOAgent

Service

alarmid

Stormshield Network alarm ID

Decimal format. Example: "85"

Alarm ID

tsagentname Indicates the name of the TS agent used.
String of characters in UTF-8 format.
Example: tsagentname="agent_name_test"
Available from: SNS v4.7.0.