Solved

juniper ssg antivirus logs

Posted on 2011-09-24
1
682 Views
Last Modified: 2012-05-12
We have a juniper ssg140 and the antivirus is enabled on it.   my question is how do i see the AV logs?  i go to reports, events and under AV nothing is listed.  I see in the general reports that the virus definitions are being updated but that's about it.   In the policy that has the antivirus profile attached to it under logging i can see the http, pop3 traffic etc but nothing regarding the AV.  I guess i would like some indication that the antivirus is doing it's job.  

any help would be much appreciated.  thx
0
Comment
Question by:techlinden
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
1 Comment
 
LVL 32

Accepted Solution

by:
dpk_wal earned 250 total points
ID: 36711844
When a devices performs any action due to Anti Virus detection it generates an event log in firewall which can be viewed on the firewall CLI using the command " get event".

To get email alert for smtp logs look at article below:
http://kb.juniper.net/InfoCenter/index?page=content&id=KB16045

Thank you.
0

Featured Post

Defend Your Organization from The Greatest Threats

Looking to fill the gaps in your security? Bring together information from the network, endpoint and threat intelligence feeds to really see what's happening in your organization. Join the WatchGuardians in their adventures fighting cyber crime!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

I recently had the displeasure of buying a new firewall at one of the buildings I play Sys Admin at. I had to get a better firewall than the cheap one that I had there since I was reconnecting the main office to the satellite office via point-to-poi…
Occasionally, we encounter connectivity issues that appear to be isolated to cable internet service.  The issues we typically encountered were reset errors within Internet Explorer when accessing web sites or continually dropped or failing VPN conne…
Exchange organizations may use the Journaling Agent of the Transport Service to archive messages going through Exchange. However, if the Transport Service is integrated with some email content management application (such as an antispam), the admini…

752 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question