The page has been translated by Gen AI.

NAT Logging

To save NAT logs, you must first create a bucket in Object Storage to save the logs, and then set the bucket as the log repository in NAT Logging, after that, by setting log saving in NAT detail inquiry, NAT logs will be saved in the Object Storage bucket.

NAT log saving requires settings in the following order.

  1. To save NAT logs, you can create a bucket in Object Storage or use an existing bucket. To create a bucket, refer to Creating Object Storage.
  2. To set this bucket as the log repository for NAT Logging, refer to Using NAT Logging log repository.
  3. To set the log storage to use in the NAT detailed inquiry, please refer to NAT log storage usage.

NAT Logging Using the log storage

To set the NAT log storage to use, you must first set the log storage setting in NAT Logging.

Reference
NAT Logging To set up a log storage, an Object Storage bucket for log storage is required, please create a bucket in the Object Storage service first. For more detailed information, please refer to Object Storage creation.
  1. All services > Management > Network Logging > NAT Logging menu, click. It moves to the NAT Logging list page.
  2. NAT Logging List page, click the Log Storage Settings button at the top, it moves to the Log Storage Settings popup window.
  3. Log Storage Settings popup window, select the Log Storage Bucket. When you select a bucket, the Log Storage Path will be displayed.
  4. Log Storage Settings popup window, check the Log Storage Bucket and Log Storage Path, then click the Confirm button.
  5. Notification Confirm the message in the popup window, then click the Confirm button.
Notice
NAT Logging After setting the log storage, you must set the log storage to use in the NAT detailed inquiry for the log storage to start. For more detailed information, please refer to Using NAT Log Storage.

NAT Logging list

NAT Logging log storage bucket is set, then the NAT Logging list is retrieved.

  • All services > Management > Network Logging > NAT Logging menu is clicked. It moves to the NAT Logging list page.
    Division
    Required
    Detailed Description
    Resource IDRequiredNAT Resource ID
    Save targetRequiredNAT resource name
    Save Registration TimeRequiredNAT Log Storage Registration Time
    Table. NAT Logging list items
Reference
NAT Logging After setting the log storage, you must set the log storage to use in the NAT detailed inquiry for the log storage to start. For more detailed information, please refer to Using NAT Log Storage.

NAT Logging content check

Please refer to the contents below and check the saved Log contents.

Saved log example: 2024-10-11T11:19:03,accept,259,17,192.168.2.173,46937,192.168.0.53,53,100.100.14.52,26937

DivisionDescription
2024-10-11T11:19:03The date and time when the log occurred (2024-10-11, 11:19:03)
acceptaction (deny / accept)
259Log occurrence firewall Rule ID (Policy ID)
17IP Protocol ID
  • 1: ICMP
  • 6: TCP
  • 17: UDP
192.168.2.173source IP
46937Departure Port
192.168.0.53Destination IP
53Destination Port
100.100.14.52NAT translated IP
26937NAT translated Port

NAT Logging do not use log storage

NAT Logging allows you to set the log repository to not be used.

  1. All services > Management > Network Logging > NAT Logging menu should be clicked. It moves to the NAT Logging list page.
  2. NAT Logging list page, click the top Log Storage Settings button. It moves to the Log Storage Settings popup window.
  3. Log Storage Settings popup window, select Log Storage Bucket as Not Used, and click the OK button.
Reference
The log repository setting can be changed when there is no log storage target. The log storage bucket change can be changed by selecting and confirming not in use and then resetting it.
PrivateLink Endpoint
Release Note