Setting a watchguard security event processor log, Host – WatchGuard Technologies SOHO User Manual

Page 78

Advertising
background image

Setting a WatchGuard Security Event Processor log host

78

The log messages may include time synchronizations between the
SOHO and the WatchGuard Key Server, discarded packets for a
packet handling violation, duplicate messages, time-outs for
attempting to open the WatchGuard Feature Key Server, or return
error messages.
Follow these steps to view these log messages:

1

With your Web browser, go to the SOHO System Status page
using the Trusted IP address of the SOHO.

For example, if using the default IP address, go to: http://192.168.111.1.

2

From the navigation bar on the left side, select Logging.

The Logging page appears and the Event Log is displayed in the lower

portion of the page.

Setting a WatchGuard Security Event
Processor log host

Setting a remote log host causes log messages to be transmitted to
a WatchGuard Security Event Processor server (participating in a
WatchGuard Firebox System

TM

solution) preconfigured to accept

logs from your SOHO. It has the advantages of saving local
resources for other less memory-intensive tasks and puts the log
host at the WatchGuard Firebox System site where customer
support can examine logs at your request to troubleshoot security
problems.

1

With your Web browser, go to the SOHO System Status page
using the Trusted IP address of the SOHO.

For example, if using the default IP address, go to: http://192.168.111.1.

2

From the navigation bar on the left side, select Logging =>
WSEP Logging.

The WatchGuard Security Event Processor page appears.

Advertising