05-15-2019 07:07 AM - edited 02-21-2020 09:08 AM
Hello , For a Firewall Rule at One 8370 managed from FMC , I see "Send Connection Events to" Selected as "Event Viewer" . But "Log at Beginning of Connection" and "Log at End of Connection" is not selected.
Having said that what should we expect , if traffic is matching this rule and not allowed at end ( i mean destination side Application ) , there will be any ALLOWED logs ?
Solved! Go to Solution.
05-15-2019 07:34 AM
I would not expect any connection events based on that rule. You need to choose one (or both) of the options at the top of the box.
05-22-2019 07:46 AM
I would not expect you to get anything in Event Viewer (as far as connection events).
05-15-2019 07:34 AM
I would not expect any connection events based on that rule. You need to choose one (or both) of the options at the top of the box.
05-22-2019 07:38 AM
Ok Marvin, while selecting only send connection events to event viewer while both option not selected what we are getting ?
05-22-2019 07:46 AM
I would not expect you to get anything in Event Viewer (as far as connection events).
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: