Kerio Tech KERIO WINROUTE FIREWALL 6 User Manual

Page 274

Advertising
background image

Chapter 22

Logs

274

connection time 00:15:53, 1142391 bytes received,

250404 bytes transmitted

The first log item is recorded upon reception of a hang-up request. The log provides

information about interface name, client type, IP address and username.

The second event is logged upon a successful hang-up. The log provides information

about interface name, time of connection (connection time), volume of incoming and

outgoing data in bytes (bytes received and bytes transmitted).

3.

Disconnection caused by an error (connection is dropped)

[15/Mar/2008 15:42:51] Line "Connection" dropped,

connection time 00:17:07, 1519 bytes received,

2504 bytes transmitted

The items are the same as in the previous case (the second item — the disconnected

report).

4.

Requested dialing (as a response to a DNS query)

[15/Mar/2008 15:51:27] DNS query for "www.microcom.com"

(packet UDP 192.168.1.2:4567 -> 195.146.100.100:53)

initiated dialing of line "Connection"

[15/Mar/2008 15:51:38] Line "Connection" successfully connected

The first log item is recorded upon reception of a DNS request (the DNS module has not

found requested DNS record in its cache). The log provides:

DNS name from which IP address is being resolved,

description of the packet with the corresponding DNS query (protocol, source IP

address, source port, destination IP address, destination port),

name of the line to be dialed.

Another event is logged upon a successful connection (i.e. when the line is dialed, upon

authentication on a remote server, etc.).

5.

On-demand dialing (response to a packet sent from the local network)

[15/Mar/2008 15:53:42] Packet

TCP 192.168.1.3:8580 -> 212.20.100.40:80

initiated dialing of line "Connection"

[15/Mar/2008 15:53:53] Line "Connection" successfully connected

The first record is logged when WinRoute finds out that the route of the packet does not

exist in the routing table. The log provides:

description of the packet (protocol, source IP address, destination port, destina-

tion IP address, destination port),

name of the line to be dialed.

Advertising