The traffic log feature is pretty usefull, however when using FQDN objects it becomes very tricky to identify traffic logs. Indeed, I use a lots of groups of FQDN objects, and even groups of groups of FQDN objects. And the traffic logs doesn't display the FQDN but only source and destination IP addresses...
Is there a way to display the FQDN objects, or better : the Objects name in the traffic logs ?
Unfortunately we can only show traffic logs by IP addresses. Basically when we use FQDN in address objects, the PA device will resolve the IPs for those objects and will use that in the policy. Hence you will always see traffic logs showing IP address. However, you can perhaps configure rules with just one specific FQDN as the source or destination. Then you can to use rule name with FQDN name to be able to track in the traffic log.
Hi Everyone, is there anyway to AutoSave the "Resolve Hostname" checkbox ?
It seems that you need to select that checkbox every time you need to display the Hostnames.
i.e. If you navigate to any other page and then back to Traffic Monitor page, it clears that checkbox.
Is it true or am I missing something ?
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!