Попытка отфильтровать политику безопасности брандмауэра, для которой не включен журнал.
Я только что GREPed политику, которая обеспечивает вывод политик, соответствующих "и действие и параметры журнала". Но я не знаю никаких механизмов фильтрации.
#zcat config.gz | egrep permit\|deny\|log | grep policy
set security policies from-zone Trust to-zone Untrust policy 44 then permit
set security policies from-zone Trust to-zone Untrust policy 44 then log session-init
set security policies from-zone Trust to-zone Untrust policy 34 then permit
set security policies from-zone Trust to-zone Untrust policy 34 then log session-init
set security policies from-zone Trust to-zone Untrust policy 82 then permit
set security policies from-zone Trust to-zone Untrust policy 82 then log session-init
set security policies from-zone Trust to-zone Untrust policy 82 then log session-close
set security policies from-zone Trust to-zone Untrust policy 73 then deny
set security policies from-zone Trust to-zone Untrust policy 73 then log session-close
set security policies from-zone Trust to-zone Untrust policy 72 then deny
set security policies from-zone Trust to-zone Untrust policy 72 then log session-close
set security policies from-zone Trust to-zone Untrust policy 67 then permit
set security policies from-zone Trust to-zone Untrust policy 53 then permit
set security policies from-zone Trust to-zone Untrust policy 53 then log session-init
set security policies from-zone Trust to-zone Untrust policy 30 then deny
set security policies from-zone Trust to-zone Untrust policy 30 then log session-close
set security policies from-zone Trust to-zone Untrust policy 75 then permit
set security policies from-zone Trust to-zone Untrust policy 75 then log session-init
set security policies from-zone Trust to-zone Untrust policy 76 then permit
set security policies from-zone Trust to-zone Untrust policy 28 then permit
set security policies from-zone Trust to-zone Untrust policy 28 then log session-init
set security policies from-zone Trust to-zone Untrust policy 50 then permit
set security policies from-zone Trust to-zone Untrust policy 50 then log session-init
set security policies from-zone Trust to-zone Untrust policy 51 then permit
set security policies from-zone Trust to-zone Untrust policy 51 then log session-init
set security policies from-zone Trust to-zone Untrust policy 55 then permit
set security policies from-zone Trust to-zone Untrust policy 55 then log session-init
set security policies from-zone Trust to-zone Untrust policy 56 then permit
set security policies from-zone Trust to-zone Untrust policy 79 then permit
set security policies from-zone Trust to-zone Untrust policy 79 then log session-init
set security policies from-zone Trust to-zone Untrust policy 57 then permit
set security policies from-zone Trust to-zone Untrust policy 57 then log session-init
set security policies from-zone Trust to-zone Untrust policy 58 then permit
set security policies from-zone Trust to-zone Untrust policy 58 then log session-init
Я хотел бы знать политики, в которых не включен журнал.
Пример:
«Политика 67» имеет только разрешение, но не зарегистрировано
Имя политики должно быть отфильтровано и отображено.