Logging for Firewall Rule: Log Storage Locations on ESXi and KVM Transport Nodes

Where is the log stored on ESXi and KVM transport nodes?

Question

The security administrator turns on logging for a firewall rule.

Where is the log stored on ESXi and KVM transport nodes?

Answers

Explanations

Click on the arrows to vote for the correct answer

A. B. C. D.

D.

When a security administrator turns on logging for a firewall rule, the logs are stored in a file on the ESXi and KVM transport nodes. The file location depends on the transport node type.

For ESXi transport nodes, the logs are stored in the /var/log/vmware/nsx/firewall.log file. This file contains the logs for all firewall rules that have logging enabled.

For KVM transport nodes, the logs are stored in the /var/log/fw.log file. This file contains the logs for all firewall rules that have logging enabled.

The /var/log/messages.log file contains system log messages and may include firewall log messages as well, but it is not specific to firewall logs.

The /var/log/dfwpktlogs.log file contains packet capture logs and is used for troubleshooting network issues.

In summary, the correct answer is A. /var/log/vmware/nsx/firewall.log for ESXi transport nodes, and B. /var/log/fw.log for KVM transport nodes.