99 - LOG_ID_TRAFFIC_HTTP_TRANSACTION
Message ID: 99
Message Description: LOG_ID_TRAFFIC_HTTP_TRANSACTION
Message Meaning: HTTP transaction
Type: traffic
Category: http-transaction
Severity: Notice
Log Field Name |
Description |
Data Type |
Length |
---|---|---|---|
agent |
User agent - eg. agent="Mozilla/5.0" |
string |
1024 |
app |
Application name |
string |
96 |
appact |
The security action from app control |
string |
16 |
appcat |
Application category |
string |
64 |
appid |
Application ID |
uint32 |
10 |
applist |
Application Control profile (name) |
string |
64 |
apprisk |
Application Risk Level |
string |
16 |
authserver |
Remote Authentication server |
string |
64 |
cat |
uint8 |
3 |
|
catdesc |
string |
64 |
|
clientdeviceid |
string |
80 |
|
clientdeviceowner |
string |
80 |
|
clientdevicetags |
string |
512 |
|
clientip |
ip |
39 |
|
date |
Date |
string |
10 |
devid |
Device Serial Number |
string |
16 |
dstip |
Destination IP Address |
ip |
39 |
dstport |
Destination Protocol Port Number |
uint16 |
5 |
dstuuid |
UUID of the Destination Address Object |
string |
37 |
duration |
Duration of the session |
uint32 |
10 |
emsconnection |
string |
8 |
|
eventtime |
Epoch time in nanoseconds |
uint64 |
20 |
group |
User group name |
string |
512 |
hostname |
string |
256 |
|
httpmethod |
string |
20 |
|
lanin |
LAN incoming traffic in bytes |
uint64 |
20 |
lanout |
LAN outgoing traffic in bytes |
uint64 |
20 |
level |
Log Level |
string |
11 |
logid |
Log ID |
string |
10 |
policyid |
Firewall Policy ID |
uint32 |
10 |
prefetch |
uint8 |
3 |
|
rawdata |
string |
1024 |
|
rcvdbyte |
Received Bytes |
uint64 |
20 |
referralurl |
string |
512 |
|
reqlength |
uint64 |
16 |
|
reqtime |
uint64 |
16 |
|
respfinishtime |
uint64 |
16 |
|
resplength |
uint64 |
16 |
|
resptime |
uint64 |
16 |
|
resptype |
string |
16 |
|
scheme |
string |
16 |
|
sentbyte |
Sent Bytes |
uint64 |
20 |
sessionid |
Session ID |
uint32 |
10 |
srcip |
Source IP address |
ip |
39 |
srcport |
Source protocol port number |
uint16 |
5 |
srcuuid |
UUID of the Source Address Object |
string |
37 |
sslaction |
Action taken by ssl-ssh-profile |
string |
26 |
statuscode |
string |
8 |
|
subtype |
Subtype of the traffic |
string |
20 |
time |
Time |
string |
8 |
tranip |
NAT Destination IP |
ip |
39 |
tranport |
NAT Destination Port |
uint16 |
5 |
transid |
uint32 |
10 |
|
type |
Log type |
string |
16 |
tz |
Time zone |
string |
5 |
url |
URL |
string |
512 |
user |
User name |
string |
256 |
utmaction |
Security action performed by UTM |
string |
32 |
vd |
Virtual domain name |
string |
32 |
wanin |
WAN incoming traffic in bytes |
uint64 |
20 |
wanout |
WAN outgoing traffic in bytes |
uint64 |
20 |