By default, no condition is configured in an interzone for recording session logs.
----End
3.12.4 Checking the Configuration
After the log function is configured on the firewall, you can view information about the logs.
Procedure
l Run the display firewall log configuration command to view information about the logs
on the firewall.
----End
Example
Run the display firewall log configuration command to view information about the logs on the
firewall.
<Huawei> display firewall log configuration
defend log :
status : enabled
log-interval : 30 s
statistics log :
status : enabled
log-interval : 30 s
blacklist log :
status : enabled
log-interval : 30 s
session log :
status : enabled
log-interval : 30 s
nat-session : disabled
binary-log host :
host source VPN instance-name
----:-- ----:-- ---
3.13 Maintaining the Firewall
3.13.1 Displaying the Firewall Configuration
Procedure
l Run the display firewall zone [ zone-name ] | [ interface | priority ] command to view the
configurations of all zones or the specified zone.
l Run the display firewall interzone [ zone-name1 zone-name2 ] command to view the
configurations of the interzone.
l Run the display firewall blacklist configuration command to view the status of the
blacklist function.
l Run the display firewall blacklist { all | ip-address [ vpn-instance vpn-instance-name ] |
dynamic | static | vpn-instance vpn-instance-name } command to view the blacklist
entries.
Huawei AR1200-S Series Enterprise Routers
Configuration Guide - Security 3 Firewall Configuration
Issue 02 (2012-03-30) Huawei Proprietary and Confidential
Copyright © Huawei Technologies Co., Ltd.
79