SoftControl logs/en — различия между версиями
EElagina (обсуждение | вклад) |
EElagina (обсуждение | вклад) |
||
(не показано 16 промежуточных версий 2 участников) | |||
Строка 1: | Строка 1: | ||
<languages></languages> | <languages></languages> | ||
+ | {{DISPLAYTITLE:Журналы продуктов SoftControl|noreplace}} | ||
== SoftControl TPSecure logs created by default == | == SoftControl TPSecure logs created by default == | ||
Строка 11: | Строка 12: | ||
|- | |- | ||
− | | | + | | Update log || checks.log || C:\Program Files\(x86)\Safensoft\Service Center\Server\Tools\Updates\Reports\ || Log of update checks || - || - |
|- | |- | ||
− | | | + | | Update log || sns.log || C:\Program Files\(x86)\Safensoft\Service Center\Server\Tools\Updates\Reports\ || Module update log || - || - |
|- | |- | ||
− | | | + | | Update log || [av_name].log || C:\Program Files\(x86)\Safensoft\Service Center\Server\Tools\Updates\Reports\ || Antivirus update log, antivirus name goes instead of av_name (bit, kav, ct, av4) || - || - |
|- | |- | ||
− | | | + | | Update log || root.log || C:\Program Files\(x86)\Safensoft\Service Center\Server\Tools\Updates\Reports\ || General log that duplicates |
+ | sns.log and [av_name].log | ||
+ | || - || - | ||
|- | |- | ||
− | !colspan="6"| | + | !colspan="6"| Admin Console logs |
|- | |- | ||
− | | | + | | Admin Console log || ConsoleDetailedLog.txt || C:\ProgramData\SafenSoft\ || Admin Console log || - || - |
|- | |- | ||
− | !colspan="6"| | + | !colspan="6"| Local logs of SysWatch |
|- | |- | ||
− | | | + | | Security event reports || system_[date]_[time].txt || C:\Documents and Settings\All Users\Application Data\ (Windows XP) or C:\ProgramData\S.N.Safe&Software\Safe'n'Sec\Reports\ (Windows 7 and higher) || Security event reports || 30 days || Through settings |
|- | |- | ||
− | | | + | | Profile gathering reports || profile_[date]_[time].txt || C:\Documents and Settings\All Users\Application Data\ (Windows XP) or C:\ProgramData\S.N.Safe&Software\Safe'n'Sec\Reports\ (Windows 7 and higher) || Profile gathering log, list of checked objects, and results of profile gathering || 30 days || Through settings |
|- | |- | ||
− | | | + | | Antivirus check log || scan_[date]_[time].txt || C:\Documents and Settings\All Users\Application Data\ (Windows XP) or C:\ProgramData\S.N.Safe&Software\Safe'n'Sec\Reports\ (Windows 7 and higher) || Antivirus check log || 30 days || Through settings |
|- | |- | ||
− | | | + | | Update log || update_[date]_[time].txt || C:\Documents and Settings\All Users\Application Data\ (Windows XP) or C:\ProgramData\S.N.Safe&Software\Safe'n'Sec\Reports\ (Windows 7 and higher) || Update log || 30 days || Through settings |
|- | |- | ||
− | | | + | | List of infected files || threats.xml || C:\ProgramData\S.N.Safe&Software\Safe'n'Sec || List of infected files || - || - |
|- | |- | ||
− | | | + | | SysWatch common logs || safensec_[date]_[time]_[foobar].txt || C:\ProgramData\S.N.Safe&Software\Safe'n'Sec\Common Logs\ || Output of messages and errors from safensec.exe processes || Once a file reaches |
+ | 50,000 records, a new file is created (the number of records may be different from the number of lines) | ||
+ | || - | ||
|- | |- | ||
− | | | + | | SysWatch common logs || snsmcon_[date]_[time]_[foobar].txt || C:\ProgramData\S.N.Safe&Software\Safe'n'Sec\Common Logs\ || Output of messages and errors from snsmcon.exe GUI || Once a file reaches 50,000 records, a new file is created (the number of records may be different from the number of lines) || - |
|- | |- | ||
− | | | + | | SysWatch common logs || snsods_[date]_[time]_[foobar].txt || C:\ProgramData\S.N.Safe&Software\Safe'n'Sec\Common Logs\ || Output of messages and errors from the antivirus scanner snsods.exe || Once a file reaches 50,000 records, a new file is created (the number of records may be different from the number of lines) || - |
|- | |- | ||
− | | | + | | Service Center connection log || sw_notify_[date]_[time].txt || C:\Documents and Settings\All Users\Application Data\ (Windows XP) or C:\ProgramData\S.N.Safe&Software\Safe'n'Sec\Reports\ (Windows 7 and higher) || Output of messages generated when connecting to Service Center || - || - |
|- | |- | ||
− | !colspan="6"| | + | !colspan="6"| Local logs of DLP Client |
|- | |- | ||
− | | | + | | Service Center connection log || dlp_notify_[date]_[time].txt || C:\Documents and Settings\All Users\Application Data\ (Windows XP) or C:\ProgramData\S.N.Safe&Software\Safe'n'Sec\Reports\ (Windows 7 and higher) || Output of messages generated when connecting to Service Center || - || - |
|- | |- | ||
− | !colspan="6"| | + | !colspan="6"| Local logs of DeCrypt |
|- | |- | ||
− | | | + | | Standard log file || DecryptLog.log || C:\Windows\ || List of devices and event notifications || Once the size of 100MB is reached, DeCryptLog(rotated dd.mm.yyyy).log is created, where dd.mm.yyyy is the date of file rotation |
+ | || - | ||
|- | |- | ||
− | | | + | | Detailed log file || DeCrypt.log || C:\ProgramData\DeCrypt\ || Events of the decryption system, reasons of operation failures || Once the size of 100MB is reached, DeCrypt.log_old1, is created, then DeCrypt.log_old2, etc. || - |
|} | |} | ||
− | [[Category:Service Center - Diagnostics | + | == SoftControl TPSecure logs not created by default == |
− | [[Category:SysWatch - Diagnostics]] | + | |
− | [[Category:DeCrypt - Maintenance]] | + | {| class="wikitable" |
+ | |- | ||
+ | ! Title !! File name !! Path !! Brief description !! Default log rotation !! Log rotation management | ||
+ | |- | ||
+ | | SysWatch temporary log || sw_main_logfile.txt || %system32% || Contains messages received from the driver. The size limit if the log is set in HKEY_LOCAL_MACHINE\SOFTWARE\S.N.Safe&Software\Safe'n'Sec Pro, EventLogSize value (in MB). By default, the value is set to 0. To enable logging, change the value as desired (e.g., 100) and restart the service. || Once the size limit is reached, the file is renamed to sw_backup_logfile.txt and a new log is created || - | ||
+ | |- | ||
+ | | DLP Client temporary log || dlp_main_logfile.txt || %system32% || Contains messages received from the driver. The size limit if the log is set in HKEY_LOCAL_MACHINE\SOFTWARE\S.N.Safe&Software\Safe'n'Sec Pro, EventLogSize value (in MB). By default, the value is set to 0. To enable logging, change the value as desired (e.g., 100) and restart the service. || Once the size limit is reached, the file is renamed to dlp_backup_logfile.txt and a new log is created || - | ||
+ | |- | ||
+ | |Driver log || snscore.log || %SystemRoot%\system32\drivers\ || Driver-level logging. To enable, create a DWORD value named LogLevel in HKEY_LOCAL_MACHINE/SYSTEM/CurrentControlSet/Services/SnsCore and assign a hexadecimal string (FFFFFFFF for full logging). Then reboot the computer. '''This type of logging is not recommended.''' || - || - | ||
+ | |} | ||
+ | |||
+ | [[Category:Service Center - Diagnostics{{#translation:}}]] | ||
+ | [[Category:SysWatch - Diagnostics{{#translation:}}]] | ||
+ | [[Category:DeCrypt - Maintenance{{#translation:}}]] |
Текущая версия на 15:27, 19 мая 2020
SoftControl TPSecure logs created by default
Title | File name | Path | Brief description | Default log rotation | Log rotation management |
---|---|---|---|---|---|
Service Center logs | |||||
Service Center log | ServerDetailedLog.txt | C:\Program Files (x86)\SafenSoft\Service Center\Server\logs\ | Service Center log | Once the size of 209715200 is exceeded, a new file is created | Through SafenSoft.Enterprise.Server.exe.nlog |
Update log | checks.log | C:\Program Files\(x86)\Safensoft\Service Center\Server\Tools\Updates\Reports\ | Log of update checks | - | - |
Update log | sns.log | C:\Program Files\(x86)\Safensoft\Service Center\Server\Tools\Updates\Reports\ | Module update log | - | - |
Update log | [av_name].log | C:\Program Files\(x86)\Safensoft\Service Center\Server\Tools\Updates\Reports\ | Antivirus update log, antivirus name goes instead of av_name (bit, kav, ct, av4) | - | - |
Update log | root.log | C:\Program Files\(x86)\Safensoft\Service Center\Server\Tools\Updates\Reports\ | General log that duplicates
sns.log and [av_name].log |
- | - |
Admin Console logs | |||||
Admin Console log | ConsoleDetailedLog.txt | C:\ProgramData\SafenSoft\ | Admin Console log | - | - |
Local logs of SysWatch | |||||
Security event reports | system_[date]_[time].txt | C:\Documents and Settings\All Users\Application Data\ (Windows XP) or C:\ProgramData\S.N.Safe&Software\Safe'n'Sec\Reports\ (Windows 7 and higher) | Security event reports | 30 days | Through settings |
Profile gathering reports | profile_[date]_[time].txt | C:\Documents and Settings\All Users\Application Data\ (Windows XP) or C:\ProgramData\S.N.Safe&Software\Safe'n'Sec\Reports\ (Windows 7 and higher) | Profile gathering log, list of checked objects, and results of profile gathering | 30 days | Through settings |
Antivirus check log | scan_[date]_[time].txt | C:\Documents and Settings\All Users\Application Data\ (Windows XP) or C:\ProgramData\S.N.Safe&Software\Safe'n'Sec\Reports\ (Windows 7 and higher) | Antivirus check log | 30 days | Through settings |
Update log | update_[date]_[time].txt | C:\Documents and Settings\All Users\Application Data\ (Windows XP) or C:\ProgramData\S.N.Safe&Software\Safe'n'Sec\Reports\ (Windows 7 and higher) | Update log | 30 days | Through settings |
List of infected files | threats.xml | C:\ProgramData\S.N.Safe&Software\Safe'n'Sec | List of infected files | - | - |
SysWatch common logs | safensec_[date]_[time]_[foobar].txt | C:\ProgramData\S.N.Safe&Software\Safe'n'Sec\Common Logs\ | Output of messages and errors from safensec.exe processes | Once a file reaches
50,000 records, a new file is created (the number of records may be different from the number of lines) |
- |
SysWatch common logs | snsmcon_[date]_[time]_[foobar].txt | C:\ProgramData\S.N.Safe&Software\Safe'n'Sec\Common Logs\ | Output of messages and errors from snsmcon.exe GUI | Once a file reaches 50,000 records, a new file is created (the number of records may be different from the number of lines) | - |
SysWatch common logs | snsods_[date]_[time]_[foobar].txt | C:\ProgramData\S.N.Safe&Software\Safe'n'Sec\Common Logs\ | Output of messages and errors from the antivirus scanner snsods.exe | Once a file reaches 50,000 records, a new file is created (the number of records may be different from the number of lines) | - |
Service Center connection log | sw_notify_[date]_[time].txt | C:\Documents and Settings\All Users\Application Data\ (Windows XP) or C:\ProgramData\S.N.Safe&Software\Safe'n'Sec\Reports\ (Windows 7 and higher) | Output of messages generated when connecting to Service Center | - | - |
Local logs of DLP Client | |||||
Service Center connection log | dlp_notify_[date]_[time].txt | C:\Documents and Settings\All Users\Application Data\ (Windows XP) or C:\ProgramData\S.N.Safe&Software\Safe'n'Sec\Reports\ (Windows 7 and higher) | Output of messages generated when connecting to Service Center | - | - |
Local logs of DeCrypt | |||||
Standard log file | DecryptLog.log | C:\Windows\ | List of devices and event notifications | Once the size of 100MB is reached, DeCryptLog(rotated dd.mm.yyyy).log is created, where dd.mm.yyyy is the date of file rotation | - |
Detailed log file | DeCrypt.log | C:\ProgramData\DeCrypt\ | Events of the decryption system, reasons of operation failures | Once the size of 100MB is reached, DeCrypt.log_old1, is created, then DeCrypt.log_old2, etc. | - |
SoftControl TPSecure logs not created by default
Title | File name | Path | Brief description | Default log rotation | Log rotation management |
---|---|---|---|---|---|
SysWatch temporary log | sw_main_logfile.txt | %system32% | Contains messages received from the driver. The size limit if the log is set in HKEY_LOCAL_MACHINE\SOFTWARE\S.N.Safe&Software\Safe'n'Sec Pro, EventLogSize value (in MB). By default, the value is set to 0. To enable logging, change the value as desired (e.g., 100) and restart the service. | Once the size limit is reached, the file is renamed to sw_backup_logfile.txt and a new log is created | - |
DLP Client temporary log | dlp_main_logfile.txt | %system32% | Contains messages received from the driver. The size limit if the log is set in HKEY_LOCAL_MACHINE\SOFTWARE\S.N.Safe&Software\Safe'n'Sec Pro, EventLogSize value (in MB). By default, the value is set to 0. To enable logging, change the value as desired (e.g., 100) and restart the service. | Once the size limit is reached, the file is renamed to dlp_backup_logfile.txt and a new log is created | - |
Driver log | snscore.log | %SystemRoot%\system32\drivers\ | Driver-level logging. To enable, create a DWORD value named LogLevel in HKEY_LOCAL_MACHINE/SYSTEM/CurrentControlSet/Services/SnsCore and assign a hexadecimal string (FFFFFFFF for full logging). Then reboot the computer. This type of logging is not recommended. | - | - |