Firewall Logging
To store firewall logs, first create a bucket in Object Storage for log storage, and then configure that bucket in the Firewall Logging log repository. Then, on the Firewall Details page, if you configure log storage, the Firewall logs are stored in the Object Storage bucket.
To store firewall logs, configure according to the following steps.
- To store firewall logs, you can create a bucket in Object Storage or use an existing bucket. 1. To create a bucket, refer to Object Storage 생성하기.
- To configure the bucket for the Firewall Logging log repository, see Firewall Logging 로그 저장소 사용하기.
- To set the log storage option to Enabled in the Firewall detailed view, refer to Firewall 로그 저장 사용하기.
Firewall Logging Enable Log Storage
To set the Firewall’s log storage option to enabled, you must first configure the log repository in Firewall Logging.
To enable the log repository for Firewall Logging, follow these steps.
- All Services > Management > Network Logging > Firewall Logging Click the menu. 1. Go to the Firewall Logging List page.
- Firewall Logging List Click the drop-down list located at the top of the page and select Log storage bucket. 2. When you select a bucket, log storage path is displayed.
- After verifying the log storage bucket and log storage path, click the Apply button.
Firewall Logging List Query
When you set the Firewall Logging log storage bucket, you can view the Firewall Logging list.
To view the Firewall Logging list, follow these steps.
- Click the All Services > Management > Network Logging > Firewall Logging menu. 1. Go to the Firewall Logging List page.
- Firewall Logging List Check the resources in use and the log storage targets on the page.
Category Detailed description Resource ID Firewall ID Save target Firewall name Save registration date and time Firewall log repository registration timestamp Table. Firewall Logging list items
Firewall Logging Check detailed information
Refer to the information below to view the detailed contents of the saved log.
Stored log example: 2024-10-11T11:23:43,deny,0,17,4.1.1.100,45499,192.168.10.10,53
| Category | Explanation |
|---|---|
| 2024-10-11T11:23:43 | Log date and time (2024-10-11, 11:23:43) |
| deny | Action (deny / accept) |
| 0 | Firewall Rule ID (Policy ID) that generated the log |
| 17 | IP Protocol ID
|
| 4.1.1.100 | Source IP |
| 45499 | Origin Port |
| 192.168.10.10 | Destination IP |
| 53 | Destination Port |
Firewall Logging Set to Not Use Log Storage
You can set the log storage in Firewall Logging to unused.
To set the Firewall Logging log repository to unused, follow the steps below.
- All Services > Management > Network Logging > Firewall Logging Click the menu. 1. Navigate to the Firewall Logging List page.
- On the Firewall Logging List page, click the top Log Storage Settings button. 2. Log Repository Settings Navigate to the popup window.
- Log storage settings popup window, select Log storage bucket as Not used, and click the Confirm button.
- The log storage settings can be changed when there is no log destination.
- To change the log storage bucket, first change the setting to unused. * You can then reconfigure it to make changes.