ZyXEL Communications 4.04 User Manual

Page of 204
 Chapter 21 System Commands
ZyWALL (ZyNOS) CLI Reference Guide
157
Use 
sys logs category
 followed by a log category and a parameter to decide what to 
record.
Use 0 to not record logs for that category, 1 to record only logs for that category, 2 to 
record only alerts for that category, and 3 to record both logs and alerts for that category. 
Not every parameter is available with every category.
Use the 
sys logs save
 command to store the settings in the ZyWALL (you must do 
this in order to record logs).
21.5.1  Displaying Logs
• Use the 
sys logs display 
command to show all of the logs in the ZyWALL’s log.
• Use the 
sys logs category display 
command to show the log settings for all of the 
log categories.
• Use the 
sys logs display [log category]
 command to show the logs in an 
individual ZyWALL log category.
• Use the 
sys logs clear
 command to erase all of the ZyWALL’s logs.
21.5.2  Log Command Example
This example shows how to set the ZyWALL to record the access logs and alerts and then 
view the results.
ras> sys logs load
ras> sys logs category access 3
ras> sys logs save
ras> sys logs display access
#  .time                 source                 destination            notes
    message
  0|06/08/2004 05:58:21 |172.21.4.154          |224.0.1.24            |ACCESS 
BLOCK
    Firewall default policy: IGMP (W to W/ZW)
  1|06/08/2004 05:58:20 |172.21.3.56           |239.255.255.250       |ACCESS 
BLOCK
    Firewall default policy: IGMP (W to W/ZW)
  2|06/08/2004 05:58:20 |172.21.0.2            |239.255.255.254       |ACCESS 
BLOCK
    Firewall default policy: IGMP (W to W/ZW)
  3|06/08/2004 05:58:20 |172.21.3.191          |224.0.1.22            |ACCESS 
BLOCK
    Firewall default policy: IGMP (W to W/ZW)
  4|06/08/2004 05:58:20 |172.21.0.254          |224.0.0.1             |ACCESS 
BLOCK
    Firewall default policy: IGMP (W to W/ZW)
  5|06/08/2004 05:58:20 |172.21.4.187:137      |172.21.255.255:137    |ACCESS 
BLOCK
    Firewall default policy: UDP (W to W/ZW)