|
Before start working with ProxyInspecor you need to check that Microsoft® ISA Server 2000 settings are meet our requirements and make changes if needed. Run ISA Management Console, select the server to work with and open the Monitoring Configuration | Logs:
Choose the W3C extended log file format logging for Web Proxy and Firewall. Make sure the Enable logging for this service switch is on.
Important note:
ProxyInspector can work with log files in W3C, ISA Native(IIS) and MSDE formats, but recommended format is W3C.
The log files must contain the following fields:
Web Proxy Service:
Client IP
Client user name
Client agent
Date
Time
Bytes sent
Bytes received
Protocol name
Object name
[Object source] - this field is optional, and if it is there, it is used to determine the traffic source
[Result code] - this field can be used to filter 401/407 code requests that do not create external traffic
|
Firewall service:
Client IP
Client user name
Client agent
Date
Time
Destination IP
Bytes sent
Bytes received
Protocol name
|
Important note:
To avoid Web traffic duplication you should either: Disable the HTTP Redirector Filter and use browser settings to operate through a proxy server (from ISA Management | Extensions | Application filters), or Completely avoid analyzing firewall log files.
|