Athena NGFW (previously known as Network Secure) provides comprehensive protection for every network perimeter, ensuring the safety of your valuable assets, data, and users from emerging threats.
Session logs are used to check which application control policy the traffic matches to facilitate troubleshooting. See the figure below.
Session Logs Retrieval Case
In an enterprise's network, it is required to specify a policy, with certain access ports determined. Therefore, after enabling Log events in the Application Control Policy, search logs in the Session Logs tab.
Step 1.Click Filter to filter logs according to your needs, as shown in the figure below.
Starting from version 8.0.95, the session log supports filtering by Mapped IP/Port, Services, and Matched Policy.
Step 2.According to the results, determine whether the port and service are normal, as shown in the figure below.
How to enable Application Control Policy:
1. Navigate to Monitor > Settings > Logging Options> Logging and Archiving, select Enable for Application Control Logs, and check the Local checkbox. You can choose other storage methods if there are external devices.
2. Navigate to Policies > Access Control > Application Control > Policies, select the corresponding application control policies, and enable the Log events function.