Fortinet black logo

Log Message Reference

10000022

Copy Link
Copy Doc ID a10d0919-b701-11ec-9fd1-fa163e15d75b:560899
Download PDF

10000022

Meaning
A FortiWeb administrator manually requested an update to either the FortiWeb regular virus database, the FortiWeb extended virus database, or the virus engine.

Field name Description

ID

(log_id)

10000022

See Log ID numbers.

Sub Type

(subtype)

system

See Subtypes.

Level

(pri)

critical

See Priority level.

User

(user)

<administrator_name>

User Interface

(ui)

{GUI(<mgmt_ip>) | none | telnet(<mgmt_ip>) | ssh(<mgmt_ip>) | console}

Logins from jsconsole indicate use of the CLI Console widget on System > Status > Status in the web UI (GUI). The source IP address is the same as the one recorded in the corresponding log message for the GUI login.

Action

(action)

update

Status

(status)

success

Message

(msg)

User <administrator_name> manually update {virus signature | virus extend signature | virus engine} from {GUI(<mgmt_ip>) | jsconsole | telnet(<mgmt_ip>) | ssh(<mgmt_ip>) | console} success

Examples

date=2014-04-10 time=12:48:29 log_id=10000022 msg_id=000044292728 device_id=FV-1KD3A13800002 vd="root" timezone="(GMT+8:00)Beijing,ChongQing,HongKong,Urumgi" type=event subtype="system" pri=critical trigger_policy="" user=admin ui=GUI action=update status=success msg="User admin manually update virus signature from GUI(10.200.10.80) success"

date=2014-04-10 time=12:48:29 log_id=10000022 msg_id=000044292727 device_id=FV-1KD3A13800002 vd="root" timezone="(GMT+8:00)Beijing,ChongQing,HongKong,Urumgi" type=event subtype="system" pri=critical trigger_policy="" user=admin ui=GUI action=update status=success msg="User admin update virus extend signature from GUI(10.200.10.80) success"

date=2014-04-10 time=12:48:29 log_id=10000022 msg_id=000044292726 device_id=FV-1KD3A13800002 vd="root" timezone="(GMT+8:00)Beijing,ChongQing,HongKong,Urumgi" type=event subtype="system" pri=critical trigger_policy="" user=admin ui=GUI action=update status=success msg="User admin update virus engine from GUI(10.200.10.80) success"

10000022

Meaning
A FortiWeb administrator manually requested an update to either the FortiWeb regular virus database, the FortiWeb extended virus database, or the virus engine.

Field name Description

ID

(log_id)

10000022

See Log ID numbers.

Sub Type

(subtype)

system

See Subtypes.

Level

(pri)

critical

See Priority level.

User

(user)

<administrator_name>

User Interface

(ui)

{GUI(<mgmt_ip>) | none | telnet(<mgmt_ip>) | ssh(<mgmt_ip>) | console}

Logins from jsconsole indicate use of the CLI Console widget on System > Status > Status in the web UI (GUI). The source IP address is the same as the one recorded in the corresponding log message for the GUI login.

Action

(action)

update

Status

(status)

success

Message

(msg)

User <administrator_name> manually update {virus signature | virus extend signature | virus engine} from {GUI(<mgmt_ip>) | jsconsole | telnet(<mgmt_ip>) | ssh(<mgmt_ip>) | console} success

Examples

date=2014-04-10 time=12:48:29 log_id=10000022 msg_id=000044292728 device_id=FV-1KD3A13800002 vd="root" timezone="(GMT+8:00)Beijing,ChongQing,HongKong,Urumgi" type=event subtype="system" pri=critical trigger_policy="" user=admin ui=GUI action=update status=success msg="User admin manually update virus signature from GUI(10.200.10.80) success"

date=2014-04-10 time=12:48:29 log_id=10000022 msg_id=000044292727 device_id=FV-1KD3A13800002 vd="root" timezone="(GMT+8:00)Beijing,ChongQing,HongKong,Urumgi" type=event subtype="system" pri=critical trigger_policy="" user=admin ui=GUI action=update status=success msg="User admin update virus extend signature from GUI(10.200.10.80) success"

date=2014-04-10 time=12:48:29 log_id=10000022 msg_id=000044292726 device_id=FV-1KD3A13800002 vd="root" timezone="(GMT+8:00)Beijing,ChongQing,HongKong,Urumgi" type=event subtype="system" pri=critical trigger_policy="" user=admin ui=GUI action=update status=success msg="User admin update virus engine from GUI(10.200.10.80) success"