User`s manual
P-660 Series Support Notes
25
All contents copyright © 2005 ZyXEL Communications Corporation.
You can also view Centralized logs via mail or syslog, please configure mail server or
Unix Syslog server in Advanced/Logs/Log Settings.
4. When does the P-660 generate the firewall alert?
The P-660 generates the alert when an attack is detected by the firewall and sends it
via Email. So, to send the alert you must configure the mail server and Email address
using Web Configurator. You can also specify how frequently you want to receive the
alert via Web Configurator.
5. What does the alert show to us?
The alert shown in the Email is actually the evens of the attack. So, the Reason
column shows Attack and the attack type. Please see the example shown below.
# Time Packet Information Reason Action
127|Mar 15 0 |From:192.168.1.1 To:192.168.1.1 |attack |block
| 03:04:54|ICMP type:00008 code:00000 |land |
6. What is the difference between the log and alert?
A log entry is just added to the log inside the P-660 and e-mailed together with all
other log entries at the scheduled time as configured. An alert is e-mailed immediately
after an attacked is detected.
General Application Notes