Cisco Cisco Web Security Appliance S170 Guida Utente
Chapter 12 Data Security and External DLP Policies
Logging
12-28
Cisco IronPort AsyncOS 7.0 for Web User Guide
OL-23079-01
•
Data Security Logs. Records client history for upload requests that are
evaluated by the IronPort Data Security Filters.
evaluated by the IronPort Data Security Filters.
•
Data Security Module Logs. Records messages related to the IronPort Data
Security Filters.
Security Filters.
•
Default Proxy Logs. In addition recording errors related to the Web Proxy,
the default proxy logs include messages related to connecting to external DLP
servers. This allows you to troubleshoot connectivity or integration problems
with external DLP servers.
the default proxy logs include messages related to connecting to external DLP
servers. This allows you to troubleshoot connectivity or integration problems
with external DLP servers.
The following text illustrates a sample Data Security Log entry:
Mon Mar 30 03:02:13 2009 Info: 0 10.1.1.1 - -
<<bar,text/plain,5120><foo,text/plain,5120>>
DEFAULT_CASE-allowall-DefaultGroup-DefaultGroup-NONE-DefaultRouting
ns server10.qa nc
describes the Data Security Log fields.
Table 12-3
Data Security Log Fields
Field Value
Description
Wed Feb 11 23:09:18 2009 Info:
Timestamp and trace level
303
Transaction ID
10.1.1.1
Source IP address
-
User name
-
Authorized group names
<<bar,text/plain,5120><foo,text/
plain,5120>>
File name, file type, file size for each
file uploaded at once
file uploaded at once
Note: This field does not include
text/plain files that are less than the
configured minimum request body size,
the default of which is 4096 bytes. For
more information on configuring the
minimum request body size, see
text/plain files that are less than the
configured minimum request body size,
the default of which is 4096 bytes. For
more information on configuring the
minimum request body size, see
.