System monitoring Page 95 FortiRecorder 2.4.2 Administration Guide
3. To return to the list of log files, click the Back button.
See also
• Displaying & sorting log columns & rows
• Searching logs
Displaying & sorting log columns & rows
You can display, hide and re-order most columns — each column corresponds to a field in the
log messages — to display only relevant categories of information, in your preferred order.
To display or hide columns
1. Go to one of the log types, such as Monitor > Log Viewer > Event.
2. Double-click the row of a log file to view the log messages that it contains.
3. Hover your mouse cursor over one of the column headings. An arrow will appear on the right
side of the heading. Click the arrow to display a drop-down menu, then hover your mouse
cursor over the Columns item in the menu to display a list of check boxes — one for each
column.
4. Select which columns to hide or display:
Subtype The category of the log message, such as admin for events such as
authentication or configuration changes, or system for events such
as disk consumption or connection failures.
When in raw format, this is the log’s subtype field.
Log ID A dynamic log identifier within the system, not predictable, indicative
of the cause nor necessarily a unique identifier.
When in raw format, this is the log’s log_id field.
Message The log message that describes the specific occurrence of a
recordable event.
For example, all logout events follow a format similar to User admin
logout from GUI(172.16.1.5). but the exact message varies if
the account name, connection method, and IP address are different.
When in raw format, this is the log’s msg field.
Setting name Description
If you need to sort and filter the log messages based on more complex criteria, you can
download the log file as a raw or CSV-formatted file for loading into external log or spreadsheet
software (see “Downloading log messages”).