FS Sentry API Security Gateway - Syslog Output via TCP Sentry Access Log Status Codes Last 24 Hours Sentry Access Log Status Codes Last 24 Hours LogName = Access | top StatusCode -24h@h now ["host","source","sourcetype"] HTTP Method Last 24 Hours HTTP Method Last 24 Hours LogName = Access | top Method -24h@h now Service Invoked Last 24 Hours (by path) Service Invoked Last 24 Hours (by path) LogName = Access| top Path -24h@h now TrainingSvc SOAP 1.2 Invocations Last 24 Hours TrainingSvc SOAP 1.2 Invocations Last 24 Hours LogName=Access /training/training.soap12.asmx | stats count as "hits" -24h@h now TrainingSvc SOAP 1.1 Invocations Last 24 Hours TrainingSvc SOAP 1.1 Invocations Last 24 Hours LogName=Access /training/training.asmx | stats count as "hits" -24h@h now TrainingSvc SOAP 1.1 Echo Op 24 Hours TrainingSvc SOAP 1.1 Echo Op 24 Hours Matched WSDL operation 'Echo(EchoSoapIn)' | stats count as "hits" -24h@h now TrainingSvc SOAP 1.1 SplitValues Op 24 Hours TrainingSvc SOAP 1.1 SplitValues Op 24 Hours Matched WSDL operation 'SplitValues(SplitValuesSoapIn)' | stats count as "hits" -24h@h now Operations Invoked Last 24 hours Operations Last 24 hours Matched WSDL operation | top OperationName -24h@h now Total Transactions All Services Today Total Transactions All Services Today LogName = Access | stats count as "hits" @d now TotalTimeMS All Transactions Last 24 Hours TotalTimeMS All Transactions Last 24 Hours LogName = Access | top TotalTimeMS 0
Attachment Size by ClamAV Scanning Log Message - 24 hours Attachment Size by ClamAV Scanning Log Message - 24 hours virus scanning incoming document of size -24h@h now ["host","source","sourcetype"] 401 Errors in Access Log Last 24 Hours 401 Errors in Access Log Last 24 Hours LogName=Access StatusCode=401 -24h@h now ["host","source","sourcetype"] Status Code 500 Last 24 Hours Status Code 500 Last 24 Hours LogName=Access StatusCode=500 -24h@h now ["host","source","sourcetype"] Sentry Admin Logins Last 24 Hours - Audit Log Sentry Admin Logins Last 24 Hours - Audit Log 13014 -24h@h now ["host","source","sourcetype"]