cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 

ENS Firewall logs

Jump to solution

Dear All,

@Former Member @akatt 

I am running ENS 10.6.1

HIPS has a log file Event.log that stored firewall events in list format (i.e.  1 row per event).  It is very useful in troubleshooting as I can easily filter in/out specific row in excel. There is no such log in ENS.  Is it possible to write a PowerShell or VB script to convert firewall log into CSV or delimited TXT.

Otherwise please suggest/advise/guide me on how I could achieve this requirement. Your help is much appreciated.

Regards,

Venu
2 Solutions

Accepted Solutions
ktankink
McAfee Employee
McAfee Employee
Report Inappropriate Content
Message 2 of 4

Re: ENS Firewall logs

Jump to solution

As you stated, ENSFW does not have the ability to output the firewall logs in the format that HIPS did with event.log.  While it may be possible to write a script to convert the FirewallEventMonitor.log details to a different format of your choosing, it's not something provided by McAfee.  

In my own experience, most people did not like the HIPS event.log format; they liked the format that is used today in the ENS FirewallEventMonitor.log (which is the same format when you used the EXPORT option in the HIPS ClientUI Activity log).

View solution in original post

jess_arman
McAfee Employee
McAfee Employee
Report Inappropriate Content
Message 4 of 4

Re: ENS Firewall logs

Jump to solution

@vnaidu Support does not provide assistance with custom scripting. If you would like this service, you can speak with your Sales representative regarding Professional Services.

 

Was my reply helpful?

If this information was helpful in any way, or answered your question, will you please select "Accept as Solution" in my reply, or give kudos as appropriate, so together we can help other members?

View solution in original post

3 Replies
ktankink
McAfee Employee
McAfee Employee
Report Inappropriate Content
Message 2 of 4

Re: ENS Firewall logs

Jump to solution

As you stated, ENSFW does not have the ability to output the firewall logs in the format that HIPS did with event.log.  While it may be possible to write a script to convert the FirewallEventMonitor.log details to a different format of your choosing, it's not something provided by McAfee.  

In my own experience, most people did not like the HIPS event.log format; they liked the format that is used today in the ENS FirewallEventMonitor.log (which is the same format when you used the EXPORT option in the HIPS ClientUI Activity log).

Re: ENS Firewall logs

Jump to solution

@ktankink @Former Member @akatt 

Can someone help me with any sort of script that could help me.

Venu
jess_arman
McAfee Employee
McAfee Employee
Report Inappropriate Content
Message 4 of 4

Re: ENS Firewall logs

Jump to solution

@vnaidu Support does not provide assistance with custom scripting. If you would like this service, you can speak with your Sales representative regarding Professional Services.

 

Was my reply helpful?

If this information was helpful in any way, or answered your question, will you please select "Accept as Solution" in my reply, or give kudos as appropriate, so together we can help other members?

You Deserve an Award
Don't forget, when your helpful posts earn a kudos or get accepted as a solution you can unlock perks and badges. Those aren't the only badges, either. How many can you collect? Click here to learn more.

Community Help Hub

    New to the forums or need help finding your way around the forums? There's a whole hub of community resources to help you.

  • Find Forum FAQs
  • Learn How to Earn Badges
  • Ask for Help
Go to Community Help

Join the Community

    Thousands of customers use the McAfee Community for peer-to-peer and expert product support. Enjoy these benefits with a free membership:

  • Get helpful solutions from McAfee experts.
  • Stay connected to product conversations that matter to you.
  • Participate in product groups led by McAfee employees.
Join the Community
Join the Community