Note : This is the classic/original FAQ. For the very latest articles and new content for UK/Ireland users, please visit the Product Knowledgebase here
General Router FAQ
Firewall Logs |
|
How do I decode firewall log entries ?
Advanced users may wish to refer to router firewall/packet filtering logs. Each line of the log will contain the following fields :
- System Time
- Location (LAN/WAN)
- Rule No (Set:Rule). Root or Group : Rule No. (Only Active rules numbered)
- Action Taken (No match:n Block:b Pass:p )
- Source IP/Port
- Destination IP/Port(or service name)
- Protocol (tcp/udp/icmp etc.)
- Header Length (bytes)
- Payload Size (Kb)
- Packet Type (SYN,ACK,FIN,RST,PUSH,URG etc.)
- ACK Number
- Sequence Number
- Window size (bytes)
- Direction (In or Out)
NOTICE : This document is © SEG Communications and may not be distributed without specific written consent. Information and products subject to change at any time without notice.