Important note about SSL VPN compatibility for 20.0 MR1 with EoL SFOS versions and UTM9 OS. Learn more in the release notes.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Empty dashboards

Hi,

I've enabled logging on all my policies but still struglge to find information that I had on the UTM 9. On the UTM I could see which users visited what URLS, when and how often. I could define users from their mac address, I can't find this on the XG? I've attached some screenshots of the traffic and security dashboard where I think Iam missing some information.

Any clues to what Iam missing. Are there any logs that might not be enabled or anything else I need to enable so that I'am able to see what URLS are visited, when and by whom?



This thread was automatically locked due to age.
  • Hi Tony,

    You will find enabling logging in the rule base is the first step in getting the reporting working, you will also need to forward the log entries to the iView reporting environment.

    You can manage to log forwarding by browsing to System > System Services > Log Settings, the simplest solution to get started is to just select the top check box above your log server (to forward everything) and then apply. later on you can tidy up by turning off some of the forwarding if this is producing too much log data.

    This applies to the on appliance iView or the external iView Appliance.

    Hope this helps,

    Leon

    Leon Friend

    Sophos Sales Engineer

    Sophos XG Firewall - Certified Architect, Sophos Certified Engineer, Cyberoam CCNSE, Cyberoam CCNSP