WebKeeper SG

Download 59
Last updated Aug 12, 2023

webkeeper-logs

Fetch web proxy logs from Elastic of WebKeeper SG.

webkeeper-logs profile=PROFILE [duration=NUM{mon|w|d|h|m|s}] [from=yyyyMMddHHmmss] [to=yyyyMMddHHmmss] [offset=NUM] [limit=NUM]
profile=PROFILE
The identifier of WebKeeper SG connect profile
duration=NUM{mon|w|d|h|m|s}
Scan only recent data. You should use s(second), m(minute), h(hour), d(day), mon(month) time unit. For example, 10s means data from 10 seconds earlier.
from=yyyyMMddHHmmss
Start time of range. yyyyMMddHHmmss format. If you omit time part, it will be padded by zero.
to=yyyyMMddHHmmss
End time of range. yyyyMMddHHmmss format. If you omit time part, it will be padded by zero.
offset=NUM
Skip count
limit=NUM
Max output count

Output Fields

FieldTypeNameDescription
_timeDateTime
guidStringLog GUID
agent_idStringAgent ID
userStringUser
emp_nameStringEmployee name
dept_nameStringDepartment name
src_ipIP addressSource IP
dst_ipIP addressDestination IP
dst_portIntegerDestination port
policyStringPolicy
category_codeLongCategory codee.g. 900010000000512
categoryStringCategory namee.g. Internet (general)
methodStringHTTP Methode.g. GET, POST
domainStringDomain
pathStringPath
queryStringQuery string
refererStringHTTP referer
file_numIntegerFile count
keywordStringKeyword
post_sizeIntegerHTTP post size
pass_block_typeStringBlock type0: PERMIT, 256: CATEGORY_BLOCK, 512: SIZE_BLOCK
post_size_limitIntegerPOST size limit
dept_codeStringDepartment code
user_guidStringUser GUID