home *** CD-ROM | disk | FTP | other *** search
- 0#LOGGING/ WARNINGS
- 1#LOGGING
- 2#Sphinx is able to report you on a disk file all the events that you want to be reported,
- in order to permit you to examine with powerful tools, offered by Sphinx (Log Monitor)
- the various events that happened during network sessions.
- It is recommended to Allow Logging and to check periodically SPHINX's Logging Monitor.
- This monitor permit you to see the list of events occured
- (accessed sites, the tries for accessing prohibited sites...)
- with powerful sorting and filtering functions.
- 3#Use log
- 4#ENABLE INTERNET CONTROL FILTERS LOGGINGS
- 5#It is recommended to enable Logging of Internet service usage(Web, Mail, FTP, Chat ..)
- in case you want to audit use of Internet Services : Sites accessed and access duration, tries
- for accessing prohibited sites ...
- 6#Enable logging
- 7#ENABLE ADVANCED FILTERS LOGGINGS
- 8#in order to permit you to examine with powerful tools, offered by Sphinx (Log Monitor)
- the various events that happened during network sessions.
- It is recommended to Allow Logging and to check periodically SPHINX's Logging Monitor.
- This monitor permit you to see the list of events occured
- 9#Enable logging
- 10#SAVE LOG DAILY IN SEPERATE FILE
- 11#It is recommended to save Log files each day on a separate file.
- You can then more easily audit communications activities during a long period.
- 12#Save Daily
- 13#LIMIT OF REPORT FILE
- 14#It is RECOMMENDED to control the size of the Log File to 1500 Ko,
- and to choose to overwrite it if reaching this size.
- Be aware that you will have only the last logging messages
- if the size of this file reachs this amount of disk occupation
- This option will permit you to control the occupation of your local disk
- and will avoid your computer being the victim of attacks by hackers that asks this vulnerability
- (fully fill the local disk and so lock your computer).
- You can change those setting to values of your choice.
- 15#limit report file length to 1500Ko
- 16#INTERVALS OF LOG DISK SAVING
- 17#If you allowed Logging, you have to be aware that this will slow down a little bit your computer,
- that's why it is recommended to specify the Interval of saving of the Log information
- to the disk, to 15 minutes, in order to avoid the slowing down
- operation of your computer, by repetitive saving of the Log messages to the disk
- (Repetitive little disk access takes more time than a Bulk periodic access).
- You can change those setting to values of your choice.
- 18#Set saving interval to 15 mn
- 19#REPORT Full
- 20#It is recommended to stop Logging, if your log file reach the maximum size allowed.
- You can then inspect the Log file and see what happened. One possible attack by hackers is to
- overload the Logging process
- 21#Do not log anymore
- 22#WARNINGS
- 23#Sphinx is able to report you interactively all the events that you want to be reported in real time.
- Mainly, arrival of communications on which you have not specified an explicit control rule.
- Sphinx allows that you reports interactively those events,
- to permit you to examine what is happening and allow you to decide accordingly and interactively.
- It is RECOMMENDED to Allow Warnings, if you have not yet specified an accurate control policy.
- 24#Enable warnings
- 25#LEARNING MODE
- 26#Sphinx can ask you (or write in the Warning Monitor) for the decision to takes,
- each time he received a communication on which you has not previously specified
- an Explicit control
- It is RECOMMENDED to BLOCK all communictions on which no rules were defined
- AND to Takes trace of these tries in the Warning Moitor
- You Can previously, change those recommended settings, in the Configuration Mode
- 27#Drop undefined communications
- 28#WARN IN A MONITOR
- 29#In case you allowed warnings, you have to be aware that this can be cumbersome for you.
- that's why it is RECOMMENDED to report and read them through SPHINX's Warning Monitor.
- You have only to be aware that the size of this file is limited,
- so that some of the first warnings could be lost,
- in case that limit is reached (this option is made so, to avoid some kinds of Hacker attacks).
- You can change those setting to values of your choice.
- 30#Report warnings in file
- //end log wizard Panel