This command displays the syslog alert profile information such as the server IP, UDP port, facility, priority, policy based notify, quarantine based notify, severity based notify and the syslog alert templates.
Syntax:
show syslog profile
Sample Output:
IntruDbg#> show syslog profile
[Syslog alert profile information]
Syslog server IP : 10.11.11.1
UDP port : 514
Facility : 4
Priority : 0
Policy Based Notify : Disable
Quarantine Based Notify : Disable
Severity Based Notify : Notify All Severity Alerts
Syslog Alert Template : $IV_SENSOR_NAME$ detected $IV_DIRECTION$ attack $IV_ATTACK_NAME$ (severity = $IV_ATTACK_SEVERITY$). $IV_SOURCE_IP$:$IV_SOURCE_PORT$ -> $IV_DESTINATION_IP$:$IV_DESTINATION_PORT$ (result = $IV_RESULT_STATUS$) $IV_MALWARE_FILE_SHA256_HASH$ $IV_MALWARE_FILE_SHA1_HASH$ $IV_MALWARE_FILE_NAME$ $IV_MALWARE_FILE_MD5_HASH$ $IV_SOURCE_IP$ $IV_SOURCE_PORT$ $IV_DESTINATION_PORT$ $IV_DESTINATION_IP$
Applicable to:
NS-series and Virtual IPS Sensors