Sawmill
Download Sawmill 8.8.1
30 Days Free Trial
Home Products Downloads Purchase Support About About
Sawmill Sawmill

SAWMILLPLUG-IN

ALL PLUG-INS

Sawmill has plug-ins to support the following log formats:

line
PALOALTO FIREWALL(CEF)

Sawmill is a Paloalto Firewall(CEF) log analyzer (it also supports the 1021 other log formats listed to the left). It can process log files in Paloalto Firewall(CEF) format, and generate dynamic statistics from them, analyzing and reporting events. Sawmill can parse Paloalto Firewall(CEF) logs, import them into a MySQL, Microsoft SQL Server, or Oracle database (or its own built-in database), aggregate them, and generate dynamically filtered reports, all through a web interface. Sawmill can perform Paloalto Firewall(CEF) log analysis on any platform, including Windows, Linux, FreeBSD, OpenBSD, Mac OS, Solaris, other UNIX, and others.

Sawmill stores the following non-numerical fields in its database for Paloalto Firewall(CEF), generates reports for each field, and allows dynamic filtering on any combination of these fields:

Field  Internal Name
   subtype  subtype
   type  type
   severity  severity
   serial  serial
   source  src
   destination  dst
   NAT source IP  nat_source_ip
   NAT destination IP  nat_destination_ip
   rule  rule
   suser  suser
   duser  duser
   application  app
   virtual system  virtual_system
   source zone  source_zone
   destination zone  destination_zone
   inbound interface  inbound_interface
   outbound interface  outbound_interface
   session ID  session_id
   source port  spt
   destination port  dpt
   NAT source port  nat_source_port
   NAT destination port  nat_destination_port
   flags  flags
   protocol  proto
   account  act
   direction  direction

Sawmill stores the following numerical fields in its database for Paloalto Firewall(CEF), aggregating them and including them as columns in most reports:

Numerical Field  Internal Name
   events  events
   bytes  bytes
   packets  packets
   duration  duration

See Sawmill Features to learn more about Sawmill's options for viewing, customizing, filtering, exporting and scheduling Paloalto Firewall(CEF) reports.

Sawmill also supports 1021 other log formats.

© 2024 Flowerfire | Copyright | Privacy Policy | License Agreement | Terms of Use | Contact | Feedback | About
Sawmill Software
Sawmill Software
Back to Sawmill Home