Fortinet black logo

Administration Guide

Viewing message details

Viewing message details

To view message details:
  1. Double-click a message in the message list.

    The details pane is displayed to the right of the message list, with the fields categorized in tree view.

    You can display the log details pane below the message list by clicking the Bottom icon in the log details pane. When the log details pane is displayed below the message list, you can move it to the right of the log message list by clicking the Right icon. This is sometimes referred to as docking the pane to the bottom or right of the screen.

The log details pane provides shortcuts for adding filters and for showing or hiding a column. Right-click a log field to select an option.

If the log message contains UTM logs, you can click the UTM log icon in the log details pane to open the UTM log view window.

Note

If the log message contains IPS signature information, you can click the IPS signature link under Attack Name to view the IPS Signature details in a dialog window.

To view FortiWEB packet logs:
  1. In the Type column, click Attack log.
  2. Double-click a message in the list to open the log details pane.
  3. In the Data field, click the Device icon. The View Attack Content dialog displays a subset of FortiWEB's packet log (headers, arguments, and a truncated HTTP body). The maximum size of the packet log is 8 KB.

Tooltip

The Device icon is also available in the Data column. To display the column, click Column Settings, and select Data from the dropdown.

Viewing message details

To view message details:
  1. Double-click a message in the message list.

    The details pane is displayed to the right of the message list, with the fields categorized in tree view.

    You can display the log details pane below the message list by clicking the Bottom icon in the log details pane. When the log details pane is displayed below the message list, you can move it to the right of the log message list by clicking the Right icon. This is sometimes referred to as docking the pane to the bottom or right of the screen.

The log details pane provides shortcuts for adding filters and for showing or hiding a column. Right-click a log field to select an option.

If the log message contains UTM logs, you can click the UTM log icon in the log details pane to open the UTM log view window.

Note

If the log message contains IPS signature information, you can click the IPS signature link under Attack Name to view the IPS Signature details in a dialog window.

To view FortiWEB packet logs:
  1. In the Type column, click Attack log.
  2. Double-click a message in the list to open the log details pane.
  3. In the Data field, click the Device icon. The View Attack Content dialog displays a subset of FortiWEB's packet log (headers, arguments, and a truncated HTTP body). The maximum size of the packet log is 8 KB.

Tooltip

The Device icon is also available in the Data column. To display the column, click Column Settings, and select Data from the dropdown.