Quick auditing, Figure 91, Table 85 – H3C Technologies H3C SecCenter UTM Manager User Manual
Page 107

99
Figure 91 NAT log auditing
Table 85 NAT log auditing query options
Option Description
Src IP
Type a source IP address.
Dest IP
Type a destination IP address.
Src IP after NAT
Type a source IP address after NAT.
Dest IP after NAT
Type a destination IP address after NAT.
Src Port
Type a source port.
Dest Port
Type a destination port.
Src Port after NAT
Type a source port after NAT.
Dest Port after NAT
Type a destination port after NAT.
User Name
Type the username of a user.
Start Time
End Time
Specify a time range.
The time period can be 24 hours at most.
CAUTION:
The NAT logs are in binary format, and the receiving port for NAT logs is 30017.
Quick auditing
From the navigation tree of the behavior auditing component, select Quick Auditing under User Behavior
Auditing to enter the quick auditing page, as shown in xxx. You can type the IP or username of a user
and specify a time range to audit all applications of the user in the time range. xxx describes the quick
auditing query options.