I should see both pass and fails in the logs. I still don't see it show up in the ironport logs. If I remove the search string and uncheck follow redirect, it test successfully. Watching the ironport logs, it doesn't even hit it or show up. When I test, if fails saying "Not Available" status Access Denied, authorization failed. If it doesn't get the block page and actually gets to the site, it wont find the search string and should trigger an alert. So in theory if it tries to go to say and gets blocked as it should, then it should fined the search string and think everything is ok. I setup the search string for this and set fail if found to false.
![web monitor filter web monitor filter](https://www.webtitan.com/wp-content/uploads/2016/02/web-content-wifi-filter-for-internet-monitoring-1024x370.png)
The first line on this page is "This Page is Blocked". I logged onto a machine with the credentials I have setup in APM to verify I got our block page when trying to visit a page that should be blocked. I can't seem to find a configuration to work. We use wccp redirect on our firewall, so we don't have to set up proxy on our machines. I would like to setup a HTTP Monitor to let me know when it is not working. All other tradenames are the property of their respective owners.We use Cisco's Ironport to filter our web traffic. WatchGuard and the WatchGuard logo are registered trademarks or trademarks of WatchGuard Technologies in the United States and/or other countries. Run Diagnostic Tasks to Learn More About Log MessagesĮnable Notification for Specific Messages
#Web monitor filter how to
Select the Regular expression filtering check box.įor more information on how to create regular expressions, see About Regular Expressions.To use regular expressions when you filter Traffic Monitor data, you must enable Traffic Monitor to use regular expressions. For example, if you type 10.1 in the filter drop-down list, the log messages are filtered to only include entries with the characters 10.1.
![web monitor filter web monitor filter](http://en.lanctrl.com/screenshot/Dns.gif)
Select the Show Log Field Names check box.īy default, Traffic Monitor filters all log messages with a literal string search.You can enable Traffic Monitor to include labels for log message fields, such as src_ip, dst_ip, and src_port. In the Maximum Log Messages text box, type or select the maximum number of log messages.For more information see, View Device Log Messages in WebCenter and See Log Messages & Reports in WebCenter. To examine a large volume of log messages, we recommend that you use Log Manager to review your log messages. If you have a slow processor or a small quantity of RAM, we recommend you specify a lower value because a high value can slow your management computer. When the maximum number is reached, new log messages replace the oldest entries. You can select a value from one thousand to 25 thousand log messages. Configure the settings as described in the next sections.įrom the Settings dialog box, you can change the maximum number of log messages that appear in Traffic Monitor at the same time.Or, right-click anywhere on the display and select Settings.
![web monitor filter web monitor filter](http://i.ytimg.com/vi/5lKYoMHVJ8U/maxresdefault.jpg)
You can select the background color for the windows, the text color for log types, whether to show log messages in color, whether to show the names of the log fields, enable the use of regular expressions when you filter log messages, and set the maximum number of log messages. You can customize the appearance of Traffic Monitor.