12.1.3. Traffic Log

The Traffic log displays firewall and NAT rule trigger events for rules where packet logging is enabled. The following information is displayed:

  • UserGate node where the event occurred.

  • Event time.

  • User.

  • Action.

  • Rule.

  • Application.

  • Protocol.

  • Source zone.

  • Source address.

  • Source port.

  • IP destination.

  • Destination port.

  • NAT source IP (in case of a NAT rule).

  • NAT source port (in case of a NAT rule).

  • NAT destination IP (in case of a NAT rule).

  • NAT destination port (in case of a NAT rule).

  • Bytes sent/received.

  • Packets.

Administrators can select to display only the columns they need. To do this, click any of the columns and set the check marks for the columns you want to display in the context menu that appears.

To assist in finding the events of interest, the records can be filtered by various criteria such as the user account, rule, action, etc.

By clicking Export as CSV, the administrator can save the filtered log data in a .csv file for subsequent analysis.