tools windows for analyze log sonicwall ?
Alberto
Enthusiast ✭✭
Jun 6 00:00:00 10.9.0.250 id=firewall sn=eeeee time="2024-06-05 22:00:00 UTC" fw=5.99.19.212 pri=6 c=1024 m=97 app=11 n=468385063 src=192.168.111.2:38288:X5 dst=34.207.4.186:443:X1 srcMac=00:1a:1e:07:5e:68 dstMac=00:00:5e:00:01:14 proto=tcp/https sent=1981 rcvd=9720 dpi=1 dstname=img.riskified.com arg=/ code=27 Category="Information Technology/Computers" note="Policy: wifiguest, Info: 6148 " rule="479 (dddd)" fw_action="NA"
Category: Entry Level Firewalls
0
Answers
take a look at the article that runs through the Sonicwall Analytics review
https://www.fastvue.co/sonicwall/blog/sonicwall-analyzer-end-of-life-and-sonicwall-analytics-review/
Just bear in mind that FastVue is not a general syslog collector for Sonicwall, it's more focused on user activity reports, etc.
If you send syslog to it and want to go hunting for some specific log entry, it's a bit of a struggle.