H3C Technologies H3C SecPath F1000-E User Manual
Page 107
96
Figure 42 User logging 3.0 log report
Table 23 User logging 1.0 field description
Item Description
Time/Date
Time and date when a user log was generated.
Protocol Type
Protocol type of a flow log.
Flow Information
Flow information:
•
If the protocol type is TCP or UDP, the displayed flow information is source IP
address:source port-->destination IP address:destination port, for example,
1.1.1.2:1026-->1.1.2.10:69.
•
If the protocol type is another type except TCP or UDP, the displayed flow
information is source IP address-->destination IP address, for example,
1.1.1.2-->1.1.2.10.
Start Time
Time when a flow was created.
End Time
Time when a flow was removed.
Flow Action
Operator field of a flow:
•
(1)Normal over—The flow ended normally.
•
(2)Aged for timeout—Timer timed out.
•
(3)Aged for reset or config-change—Flow aging due to configuration change.
•
(4)Aged for no enough resource—Flow aging due to insufficient resource.
•
(5)Aged for no-pat of NAT—One to one NAT. In this case, only the source IP
address, the source IP address after translation and the time fields are available.
•
(6)Active data flow timeout—The life time of the flow reached the limit.
•
(8)Data flow created—Record for the flow when it was created.
•
(254)Other—Other reasons.
Table 24 User logging 3.0 field description
Item Description
Time/Date
Time and date when a user log was generated.
Protocol Type
Protocol type of a flow.
- H3C SecPath F5000-A5 Firewall H3C SecPath F1000-A-EI H3C SecPath F1000-E-SI H3C SecPath F1000-S-AI H3C SecPath F5000-S Firewall H3C SecPath F5000-C Firewall H3C SecPath F100-C-SI H3C SecPath F1000-C-SI H3C SecPath F100-A-SI H3C SecBlade FW Cards H3C SecBlade FW Enhanced Cards H3C SecPath U200-A U200-M U200-S H3C SecPath U200-CA U200-CM U200-CS