Wireless Access

Reply
Occasional Contributor II
Posts: 51
Registered: ‎12-16-2014

If You Log a Firewall Drop, How Do You View the Log?

Capture.PNG

Would someone please let me know how to view "logged" firewall rules?  See screenshot above.  Can this be viewed on the controller's command line (master or local?)?  Or can it only be viewed on a remote syslog server?  And if so, what facility will show me the dropped firewall hit and what section do I need to syslog?  Just Security > firewall?  Hope that makes sense.  I'm just trying to see if the rule got hit but would like a little more detail than "firewall hits".  thanks.

Guru Elite
Posts: 21,018
Registered: ‎03-29-2007

Re: If You Log a Firewall Drop, How Do You View the Log?

Try "show log security 100".



Colin Joseph
Aruba Customer Engineering

Looking for an Answer? Search the Community Knowledge Base Here: Community Knowledge Base

Occasional Contributor II
Posts: 51
Registered: ‎12-16-2014

Re: If You Log a Firewall Drop, How Do You View the Log?

Thanks, that shows the "action=deny" with IPs and details but not the specific rule that triggered it (just the policy) but that's ok.  Thanks for your help.

Search Airheads
Showing results for 
Search instead for 
Did you mean: