Logging & Monitoring of ACL rules
After couple attempts at truly isolating my VLANs resulted in locking myself out of my network, I'm looking into giving it another shot.
Troubleshooting such failures is limited to disabling deny rules.
I don't even know how reliable that is because the time it takes for rule changes to be picked up is not clear.
I expecting to find some setting allow me to log which rules fired (especially deny rules).
I didn't find anything like this in the Controller interface.
While looking for something else, I stumbled on this in the Controller User Guide REV 5.12, specifically in the Gateway ACL section:
My OC200 features Controller Version: 5.13.30.20. The Help Center mentions the same capability.
Yet the Log option is still nowhere to be found in the actual screen.
Just in case the remote logging is a pre-requisite, I tipped up a syslog server on my media center and pointed my OC to it (on that note, it'd be nice to know whether devices where going to use UDP or TCP for syslog). I verified it worked by logging off and back on.
No changes in the Gateway ACL screen though... Still no Log option.
Is my gateway (ER605 v1 with FW 1.3.1) not supporting this feature? Is this the reason why I don't see this option?