< Home

log type enable

Function

The log type enable command enables the function of recording the specified types of logs.

The undo log type enable command disables the function of recording the specified types of logs.

Format

log type { traffic | policy | syslog | url | content | audit | mail-filter | um | threat } enable

undo log type { traffic | policy | syslog | url | content | audit | mail-filter | um | threat } enable

Parameters

Parameter Description Value

traffic

Indicates traffic logs. This function is disabled by default.

-

policy

Indicates policy matching logs. This function is enabled by default.

-

syslog

Indicates syslogs and operation logs. This function is enabled by default.

-

audit

Indicates audit logs.

Only the USG6510E/6510E-POE/6530E support this parameter.

-

content

Indicates content logs.

Only the USG6510E/6510E-POE/6530E support this parameter.

-

mail-filter

Indicates mail filtering logs.

Only the USG6510E/6510E-POE/6530E support this parameter.

-

threat

Indicates threat logs.

Only the USG6510E/6510E-POE/6530E support this parameter.

-

url

Indicates URL logs.

Only the USG6510E/6510E-POE/6530E support this parameter.

-

um

Indicates user activity logs.

Only the USG6510E/6510E-POE/6530E support this parameter.

-

Views

System view

Default Level

2: Configuration level

Usage Guidelines

By default, traffic logs, policy matching logs, and system logs are enabled. The audit, content, mail-filter, threat, url, and um parameters are not configurable. By default, the system stores these logs in the hard disk.

After the log recording function is enabled, you can view the corresponding logs in Viewing Logs.

Log storage modes and default configurations vary depending on device models.

The USG6510E/6510E-POE/6530E supports log storage in the SD card. By default, policy matching logs, system logs are enabled, and traffic logs are disabled. Because the storage space of the device in this model is small, the audit, content, mail-filter, threat, url, and um parameters are optional in the log type enable command. By default, the functions of storing and viewing these logs are disabled by default. If required, you can manually enable these functions.

If the device has a disk, logs are recorded in the disk; if the device has no disk, logs are stored in the device memory (except for the USG6510E/6510E-POE/6530E).

The priority of the traffic logging commands executed for specific rules of a security policy (traffic logging enable and traffic logging disable) is higher than that of the global traffic logging commands (log type traffic enable and undo log type traffic enable).

Example

# Enable the function of recording traffic logs, policy matching logs, and syslogs.

<sysname> system-view
[sysname] log type traffic enable
[sysname] log type policy enable
[sysname] log type syslog enable
Copyright © Huawei Technologies Co., Ltd.
Copyright © Huawei Technologies Co., Ltd.
< Previous topic Next topic >