Page 86 / 268 Scroll up to view Page 81 - 85
Reference Manual for the Model Wireless ADSL Firewall Router DG834G
6-10
Managing Your Network
202-10006-05, June 2005
Figure 6-8:
Security Logs menu
Log entries are described in
Table 6-1
below:
Page 87 / 268
Reference Manual for the Model Wireless ADSL Firewall Router DG834G
Managing Your Network
6-11
202-10006-05, June 2005
Log action buttons are described in
Table 6-2
below:
Selecting What Information to Log
Besides the standard information listed above, you can choose to log additional information. Those
optional selections are as follows:
Attempted access to blocked site
Connections to the Web-based interface of the router
Router operation (start up, get time, etc.)
Known DoS attacks and Port Scans
Table 6-1.
Security Log entry descriptions
Field
Description
Date and Time
The date and time the log entry was recorded.
Description or
Action
The type of event and what action was taken if any.
Source IP
The IP address of the initiating device for this log entry.
Source port and
interface
The service port number of the initiating device, and whether it
originated from the LAN or WAN
Destination
The name or IP address of the destination device or Web site.
Destination port
and interface
The service port number of the destination device, and whether
it’s on the LAN or WAN.
Table 6-2.
Security Log action buttons
Field
Description
Refresh
Refresh the log screen.
Clear Log
Clear the log entries.
Send Log
Email the log immediately.
Apply
Apply the current settings.
Cancel
Clear the current settings.
Page 88 / 268
Reference Manual for the Model Wireless ADSL Firewall Router DG834G
6-12
Managing Your Network
202-10006-05, June 2005
Saving Log Files on a Server
You can choose to write the logs to a computer running a syslog program. To activate this feature,
select to Broadcast on Lan or enter the IP address of the server where the Syslog file will be
written.
Examples of Log Messages
Following are examples of log messages. In all cases, the log entry shows the timestamp as:
Day,
Year-Month-Date
Hour:Minute:Second
Activation and Administration
Tue, 2002-05-21 18:48:39 - NETGEAR activated
[This entry indicates a power-up or reboot with initial time entry.]
Tue, 2002-05-21 18:55:00 - Administrator login successful - IP:192.168.0.2
Thu, 2002-05-21 18:56:58 - Administrator logout - IP:192.168.0.2
[This entry shows an administrator logging in and out from IP address 192.168.0.2.]
Tue, 2002-05-21 19:00:06 - Login screen timed out - IP:192.168.0.2
[This entry shows a time-out of the administrator login.]
Wed, 2002-05-22 22:00:19 - Log emailed
[This entry shows when the log was emailed.]
Dropped Packets
Wed, 2002-05-22 07:15:15 - TCP packet dropped - Source:64.12.47.28,4787,WAN -
Destination:134.177.0.11,21,LAN - [Inbound Default rule match]
Sun, 2002-05-22 12:50:33 - UDP packet dropped - Source:64.12.47.28,10714,WAN -
Destination:134.177.0.11,6970,LAN - [Inbound Default rule match]
Sun, 2002-05-22 21:02:53 - ICMP packet dropped - Source:64.12.47.28,0,WAN -
Destination:134.177.0.11,0,LAN - [Inbound Default rule match]
[These entries show an inbound FTP (port 21) packet, User Datagram Protocol (UDP) packet
(port 6970), and Internet Control Message Protocol (ICMP) packet (port 0) being dropped as a
result of the default inbound rule, which states that all inbound packets are denied.]
Page 89 / 268
Reference Manual for the Model Wireless ADSL Firewall Router DG834G
Managing Your Network
6-13
202-10006-05, June 2005
Enabling Security Event E-mail Notification
In order to receive logs and alerts by e-mail, you must provide your e-mail information in the
E-mail subheading:
Figure 6-9:
E-mail menu
Turn e-mail notification on
. Select this check box if you want to receive e-mail logs and
alerts from the router.
Send alerts and logs via email
. Enter the name or IP address of your ISP’s outgoing (SMTP)
mail server (such as mail.myISP.com). You may be able to find this information in the
configuration menu of your e-mail program. Enter the e-mail address to which logs and alerts
are sent. This e-mail address will also be used as the From address. If you leave this box blank,
log and alert messages will not be sent via e-mail.
Send alert immediately.
Select the corresponding check box if you would like immediate
notification of a significant security event, such as a known attack, port scan, or attempted
access to a blocked site.
Send logs according to this schedule.
Specifies how often to send the logs: Hourly, Daily,
Weekly, or When Full.
Day for sending log
Specifies which day of the week to send the log. Relevant when the log is sent weekly or
daily.
Time for sending log
Specifies the time of day to send the log. Relevant when the log is sent daily or weekly.
Page 90 / 268
Reference Manual for the Model Wireless ADSL Firewall Router DG834G
6-14
Managing Your Network
202-10006-05, June 2005
If the Weekly, Daily or Hourly option is selected and the log fills up before the specified
period, the log is automatically e-mailed to the specified e-mail address. After the log is sent, it
is cleared from the router’s memory. If the router cannot e-mail the log file, the log buffer may
fill up. In this case, the router overwrites the log and discards its contents.
Running Diagnostic Utilities and Rebooting the Router
The DG834G wireless router has a diagnostics feature. You can use the diagnostics menu to
perform the following functions from the router:
Ping an IP Address to test connectivity to see if you can reach a remote host.
Perform a DNS Lookup to test if an Internet name resolves to an IP address to verify that the
DNS server configuration is working.
Display the Routing Table to identify what other routers the router is communicating with.
Reboot the router to enable new network configurations to take effect or to clear problems
with the router’s network connection.
From the Main Menu of the browser interface, under the Maintenance heading, select the Router
Diagnostics heading to display the menu shown in
Figure 6-10
.
Figure 6-10:
Diagnostics menu

Rate

3.5 / 5 based on 2 votes.

Bookmark Our Site

Press Ctrl + D to add this site to your favorites!

Share
Top