IPS Security

Navigation: Logs & Events

View and filter system events and traffic logs. Use boolean logic (AND/OR) for complex queries.

IPS Security

Technical background

IPS event logs

IPS logs record signature matches from the Snort engine. Each event includes the signature name, action taken, and the full 5-tuple flow (src IP:port → dst IP:port, protocol).

Event correlation

High-frequency events from one source IP may indicate scanning or exploitation attempts. Cross-reference with firewall logs to see if traffic was ultimately allowed or dropped.

Page sections

Available actions

Table columns