logging separation
blue
Newbie ✭
it would be nice to have more separation in emailed logs, for instance I want to keep a log of users using the VPN connection but anything else that is set for email notification will be buried in with it and now you can have a task of going through a couple hundred emails to sort everything out every day, is there a better way? seems like it will only send daily csv's, no hold till fulls or htmls
Category: Mid Range Firewalls
0
Answers
It's a bit tedious to do this on the firewall, but you can configure individual log events to go to email. You can probably also send them as SNMP traps.
The "right" way to do it is to send everything interesting to syslog and then use your syslog server to act on events as you see fit.