SoftControl logs/en — различия между версиями

Материал из SafenSoft Wiki
Перейти к: навигация, поиск
(Новая страница: «| Update log || checks.log || C:\Program Files\(x86)\Safensoft\Service Center\Server\Tools\Updates\Reports\ || Log of update checks || - || - |- | Update log ||…»)
 
(не показано 15 промежуточных версий 2 участников)
Строка 1: Строка 1:
 
<languages></languages>
 
<languages></languages>
 +
{{DISPLAYTITLE:Журналы продуктов SoftControl|noreplace}}
 
== SoftControl TPSecure logs created by default ==
 
== SoftControl TPSecure logs created by default ==
  
Строка 18: Строка 19:
 
|-
 
|-
 
| Update log || root.log || C:\Program Files\(x86)\Safensoft\Service Center\Server\Tools\Updates\Reports\ || General log that duplicates
 
| Update log || root.log || C:\Program Files\(x86)\Safensoft\Service Center\Server\Tools\Updates\Reports\ || General log that duplicates
sns.log and [av_name].log || - || -
+
sns.log and [av_name].log
 +
|| - || -
 
|-
 
|-
 
!colspan="6"| Admin Console logs
 
!colspan="6"| Admin Console logs
Строка 37: Строка 39:
 
|-
 
|-
 
| SysWatch common logs || safensec_[date]_[time]_[foobar].txt || C:\ProgramData\S.N.Safe&Software\Safe'n'Sec\Common Logs\ || Output of messages and errors from safensec.exe processes  || Once a file reaches
 
| SysWatch common logs || safensec_[date]_[time]_[foobar].txt || C:\ProgramData\S.N.Safe&Software\Safe'n'Sec\Common Logs\ || Output of messages and errors from safensec.exe processes  || Once a file reaches
50,000 records, a new file is created (the number of records may be different from the number of lines) || -
+
50,000 records, a new file is created (the number of records may be different from the number of lines)  
 +
|| -
 
|-
 
|-
 
| SysWatch common logs || snsmcon_[date]_[time]_[foobar].txt || C:\ProgramData\S.N.Safe&Software\Safe'n'Sec\Common Logs\ || Output of messages and errors from snsmcon.exe GUI || Once a file reaches 50,000 records, a new file is created (the number of records may be different from the number of lines) || -
 
| SysWatch common logs || snsmcon_[date]_[time]_[foobar].txt || C:\ProgramData\S.N.Safe&Software\Safe'n'Sec\Common Logs\ || Output of messages and errors from snsmcon.exe GUI || Once a file reaches 50,000 records, a new file is created (the number of records may be different from the number of lines) || -
Строка 51: Строка 54:
 
!colspan="6"| Local logs of DeCrypt
 
!colspan="6"| Local logs of DeCrypt
 
|-
 
|-
| Standard log file || DecryptLog.log || C:\Windows\ || List of devices and
+
| Standard log file || DecryptLog.log || C:\Windows\ || List of devices and event notifications || Once the size of 100MB is reached, DeCryptLog(rotated dd.mm.yyyy).log is created, where dd.mm.yyyy is the date of file rotation
event notifications || Once the size of 100MB is reached, DeCryptLog(rotated dd.mm.yyyy).log is created, where dd.mm.yyyy is the date of file rotation || -
+
|| -
 
|-
 
|-
 
| Detailed log file || DeCrypt.log || C:\ProgramData\DeCrypt\ || Events of the decryption system, reasons of operation failures  || Once the size of 100MB is reached, DeCrypt.log_old1, is created, then DeCrypt.log_old2, etc. || -
 
| Detailed log file || DeCrypt.log || C:\ProgramData\DeCrypt\ || Events of the decryption system, reasons of operation failures  || Once the size of 100MB is reached, DeCrypt.log_old1, is created, then DeCrypt.log_old2, etc. || -
 
|}
 
|}
  
[[Category:Service Center - Diagnostics/en]]
+
== SoftControl TPSecure logs not created by default ==
[[Category:SysWatch - Diagnostics]]
+
 
[[Category:DeCrypt - Maintenance]]
+
{| class="wikitable"
 +
|-
 +
! Title !! File name !! Path !! Brief description !! Default log rotation !! Log rotation management
 +
|-
 +
| SysWatch temporary log || sw_main_logfile.txt || %system32% || Contains messages received from the driver. The size limit if the log is set in HKEY_LOCAL_MACHINE\SOFTWARE\S.N.Safe&Software\Safe'n'Sec Pro, EventLogSize value (in MB). By default, the value is set to 0. To enable logging, change the value as desired (e.g., 100) and restart the service. || Once the size limit is reached, the file is renamed to sw_backup_logfile.txt and a new log is created || -
 +
|-
 +
| DLP Client temporary log || dlp_main_logfile.txt || %system32% || Contains messages received from the driver. The size limit if the log is set in HKEY_LOCAL_MACHINE\SOFTWARE\S.N.Safe&Software\Safe'n'Sec Pro, EventLogSize value (in MB). By default, the value is set to 0. To enable logging, change the value as desired (e.g., 100) and restart the service. || Once the size limit is reached, the file is renamed to dlp_backup_logfile.txt and a new log is created || -
 +
|-
 +
|Driver log || snscore.log || %SystemRoot%\system32\drivers\ || Driver-level logging. To enable, create a DWORD value named LogLevel in HKEY_LOCAL_MACHINE/SYSTEM/CurrentControlSet/Services/SnsCore and assign a hexadecimal string (FFFFFFFF for full logging). Then reboot the computer. '''This type of logging is not recommended.''' || - || -
 +
|}
 +
 
 +
[[Category:Service Center - Diagnostics{{#translation:}}]]
 +
[[Category:SysWatch - Diagnostics{{#translation:}}]]
 +
[[Category:DeCrypt - Maintenance{{#translation:}}]]

Текущая версия на 15:27, 19 мая 2020

Другие языки:
English • ‎русский

SoftControl TPSecure logs created by default

Title File name Path Brief description Default log rotation Log rotation management
Service Center logs
Service Center log ServerDetailedLog.txt C:\Program Files (x86)\SafenSoft\Service Center\Server\logs\ Service Center log Once the size of 209715200 is exceeded, a new file is created Through SafenSoft.Enterprise.Server.exe.nlog
Update log checks.log C:\Program Files\(x86)\Safensoft\Service Center\Server\Tools\Updates\Reports\ Log of update checks - -
Update log sns.log C:\Program Files\(x86)\Safensoft\Service Center\Server\Tools\Updates\Reports\ Module update log - -
Update log [av_name].log C:\Program Files\(x86)\Safensoft\Service Center\Server\Tools\Updates\Reports\ Antivirus update log, antivirus name goes instead of av_name (bit, kav, ct, av4) - -
Update log root.log C:\Program Files\(x86)\Safensoft\Service Center\Server\Tools\Updates\Reports\ General log that duplicates

sns.log and [av_name].log

- -
Admin Console logs
Admin Console log ConsoleDetailedLog.txt C:\ProgramData\SafenSoft\ Admin Console log - -
Local logs of SysWatch
Security event reports system_[date]_[time].txt C:\Documents and Settings\All Users\Application Data\ (Windows XP) or C:\ProgramData\S.N.Safe&Software\Safe'n'Sec\Reports\ (Windows 7 and higher) Security event reports 30 days Through settings
Profile gathering reports profile_[date]_[time].txt C:\Documents and Settings\All Users\Application Data\ (Windows XP) or C:\ProgramData\S.N.Safe&Software\Safe'n'Sec\Reports\ (Windows 7 and higher) Profile gathering log, list of checked objects, and results of profile gathering 30 days Through settings
Antivirus check log scan_[date]_[time].txt C:\Documents and Settings\All Users\Application Data\ (Windows XP) or C:\ProgramData\S.N.Safe&Software\Safe'n'Sec\Reports\ (Windows 7 and higher) Antivirus check log 30 days Through settings
Update log update_[date]_[time].txt C:\Documents and Settings\All Users\Application Data\ (Windows XP) or C:\ProgramData\S.N.Safe&Software\Safe'n'Sec\Reports\ (Windows 7 and higher) Update log 30 days Through settings
List of infected files threats.xml C:\ProgramData\S.N.Safe&Software\Safe'n'Sec List of infected files - -
SysWatch common logs safensec_[date]_[time]_[foobar].txt C:\ProgramData\S.N.Safe&Software\Safe'n'Sec\Common Logs\ Output of messages and errors from safensec.exe processes Once a file reaches

50,000 records, a new file is created (the number of records may be different from the number of lines)

-
SysWatch common logs snsmcon_[date]_[time]_[foobar].txt C:\ProgramData\S.N.Safe&Software\Safe'n'Sec\Common Logs\ Output of messages and errors from snsmcon.exe GUI Once a file reaches 50,000 records, a new file is created (the number of records may be different from the number of lines) -
SysWatch common logs snsods_[date]_[time]_[foobar].txt C:\ProgramData\S.N.Safe&Software\Safe'n'Sec\Common Logs\ Output of messages and errors from the antivirus scanner snsods.exe Once a file reaches 50,000 records, a new file is created (the number of records may be different from the number of lines) -
Service Center connection log sw_notify_[date]_[time].txt C:\Documents and Settings\All Users\Application Data\ (Windows XP) or C:\ProgramData\S.N.Safe&Software\Safe'n'Sec\Reports\ (Windows 7 and higher) Output of messages generated when connecting to Service Center - -
Local logs of DLP Client
Service Center connection log dlp_notify_[date]_[time].txt C:\Documents and Settings\All Users\Application Data\ (Windows XP) or C:\ProgramData\S.N.Safe&Software\Safe'n'Sec\Reports\ (Windows 7 and higher) Output of messages generated when connecting to Service Center - -
Local logs of DeCrypt
Standard log file DecryptLog.log C:\Windows\ List of devices and event notifications Once the size of 100MB is reached, DeCryptLog(rotated dd.mm.yyyy).log is created, where dd.mm.yyyy is the date of file rotation -
Detailed log file DeCrypt.log C:\ProgramData\DeCrypt\ Events of the decryption system, reasons of operation failures Once the size of 100MB is reached, DeCrypt.log_old1, is created, then DeCrypt.log_old2, etc. -

SoftControl TPSecure logs not created by default

Title File name Path Brief description Default log rotation Log rotation management
SysWatch temporary log sw_main_logfile.txt  %system32% Contains messages received from the driver. The size limit if the log is set in HKEY_LOCAL_MACHINE\SOFTWARE\S.N.Safe&Software\Safe'n'Sec Pro, EventLogSize value (in MB). By default, the value is set to 0. To enable logging, change the value as desired (e.g., 100) and restart the service. Once the size limit is reached, the file is renamed to sw_backup_logfile.txt and a new log is created -
DLP Client temporary log dlp_main_logfile.txt  %system32% Contains messages received from the driver. The size limit if the log is set in HKEY_LOCAL_MACHINE\SOFTWARE\S.N.Safe&Software\Safe'n'Sec Pro, EventLogSize value (in MB). By default, the value is set to 0. To enable logging, change the value as desired (e.g., 100) and restart the service. Once the size limit is reached, the file is renamed to dlp_backup_logfile.txt and a new log is created -
Driver log snscore.log  %SystemRoot%\system32\drivers\ Driver-level logging. To enable, create a DWORD value named LogLevel in HKEY_LOCAL_MACHINE/SYSTEM/CurrentControlSet/Services/SnsCore and assign a hexadecimal string (FFFFFFFF for full logging). Then reboot the computer. This type of logging is not recommended. - -