Displaying user logs, Displaying flow logs – H3C Technologies H3C SecPath F1000-E User Manual
Page 936

14
Item Description
End Time
Displays the time when the flows are removed.
Source Zone
Displays the source zone of the flows.
Destination Zone
Displays the destination zone of the flows.
Policy ID
Displays the ID of the inter-zone policy that the flows match.
Action
Displays the actions taken against the flows, permitted or denied.
Protocol Type
Displays the protocol type of the flows.
Flow Information
Displays the flow information.
•
If the protocol type is TCP or UDP, the displayed flow information is source IP
address:source port-->destination IP address:destination port, for example,
1.1.1.2:1026-->1.1.2.10:69.
•
If the protocol type is ICMP, the displayed flow information is source IP
address-->destination IP address,ICMP type (ICMP code), for example,
1.1.1.2-->1.1.2.10, echo(8).
•
If the protocol type is another type except these three, the displayed flow
information is source IP address-->destination IP address, for example,
1.1.1.2-->1.1.2.10.
Displaying User Logs
NOTE:
To display user logs through the Web interface, you need to configure outputting user logs to the
information center.
Displaying flow logs
Select Log Report > Report > Userlog from the navigation tree to enter the page for displaying flow
logs. If you select the 1.0 radio box, the flow logging information will be displayed, as shown in
; if you select the 3.0 radio box, the flow logging 3.0 information will be displayed, as shown in
.
Figure 12 Flow logging 1.0 log report