The page has been translated by Gen AI.

Firewall Logging

To store firewall logs, first create a bucket in Object Storage for log storage, and then configure that bucket in the Firewall Logging log repository. Then, on the Firewall Details page, if you configure log storage, the Firewall logs are stored in the Object Storage bucket.

To store firewall logs, configure according to the following steps.

  1. To store firewall logs, you can create a bucket in Object Storage or use an existing bucket. 1. To create a bucket, refer to Object Storage 생성하기.
  2. To configure the bucket for the Firewall Logging log repository, see Firewall Logging 로그 저장소 사용하기.
  3. To set the log storage option to Enabled in the Firewall detailed view, refer to Firewall 로그 저장 사용하기.

Firewall Logging Enable Log Storage

To set the Firewall’s log storage option to enabled, you must first configure the log repository in Firewall Logging.

Reference
Firewall Logging To configure a log repository, an Object Storage bucket for log storage is required. First, create a bucket in the Object Storage service. For more details, please refer to Object Storage 생성하기.

To enable the log repository for Firewall Logging, follow these steps.

  1. All Services > Management > Network Logging > Firewall Logging Click the menu. 1. Go to the Firewall Logging List page.
  2. Firewall Logging List Click the drop-down list located at the top of the page and select Log storage bucket. 2. When you select a bucket, log storage path is displayed.
  3. After verifying the log storage bucket and log storage path, click the Apply button.
Information
After setting the log repository for Firewall Logging, you must set the log storage option to Enabled on the Firewall Details page for logging to start. For more details, please refer to Firewall 로그 저장 사용하기.

Firewall Logging List Query

When you set the Firewall Logging log storage bucket, you can view the Firewall Logging list.

To view the Firewall Logging list, follow these steps.

  1. Click the All Services > Management > Network Logging > Firewall Logging menu. 1. Go to the Firewall Logging List page.
  2. Firewall Logging List Check the resources in use and the log storage targets on the page.
    CategoryDetailed description
    Resource IDFirewall ID
    Save targetFirewall name
    Save registration date and timeFirewall log repository registration timestamp
    Table. Firewall Logging list items
Reference
After setting the log repository for Firewall Logging, you must set the log storage option to Enabled in the Firewall detail view for logging to start. For more details, refer to Firewall 로그 저장 사용하기.

Firewall Logging Check detailed information

Refer to the information below to view the detailed contents of the saved log.

Stored log example: 2024-10-11T11:23:43,deny,0,17,4.1.1.100,45499,192.168.10.10,53

CategoryExplanation
2024-10-11T11:23:43Log date and time (2024-10-11, 11:23:43)
denyAction (deny / accept)
0Firewall Rule ID (Policy ID) that generated the log
17IP Protocol ID
  • 1: ICMP
  • 6: TCP
  • 17: UDP
4.1.1.100Source IP
45499Origin Port
192.168.10.10Destination IP
53Destination Port
Table. Log detailed information items

Firewall Logging Set to Not Use Log Storage

You can set the log storage in Firewall Logging to unused.

To set the Firewall Logging log repository to unused, follow the steps below.

  1. All Services > Management > Network Logging > Firewall Logging Click the menu. 1. Navigate to the Firewall Logging List page.
  2. On the Firewall Logging List page, click the top Log Storage Settings button. 2. Log Repository Settings Navigate to the popup window.
  3. Log storage settings popup window, select Log storage bucket as Not used, and click the Confirm button.
Reference
  • The log storage settings can be changed when there is no log destination.
  • To change the log storage bucket, first change the setting to unused. * You can then reconfigure it to make changes.
How-to guides
Migration Rules