Security Events Reports

To search for and generate a report on firewall syslog messages classified as security messages for selected log sources during a specified time interval, use the Security Events Real-Time Report.

Menu path: Reports > Operational > Security Events

In addition to setting the common report options in Preparing a Real-time Report, you can select optional filter operators in the generated report.

Optional filter operators can be sorted in ascending or descending order. Choose sort order using the drop-down menu. By default, the following options are all selected.

For information on saving the generated report, see Formats for Saving a Generated Report.

Security Events Report - Optional Filter Operators
Option Description
Source Device Description of the device originating the connection
Source Device IP IP address of the source device
Message Code Code number of the security message
Message Code Description Description of the security message (Cisco PIX only)
Module Juniper Netscreen module name, that is, system (Juniper Firewall only)
Severity List of severity codes:
0 Emergency: system is unusable
1 Alert: action must be taken immediately
2 Critical: critical conditions
3 Error: error conditions
4 Warning: warning conditions
5 Notice: normal but significant condition
6 Informational: informational messages
7 Debug: debug-level messages
(Juniper Firewall only)
Count Number of syslog messages classified as security messages generated