You are on page 1of 1

For logs in the fwsm sheet use this regex:

^.*?<\w+:(?<severity>.*?)>\s.*list\s(?<object>.*?)\s(?<action>.*?)\s(?
<prot>.*?)\s(?<sip>.*?)\((?<sport>.*?)\)\s->\s(?<dip>.*?)\((?<dport>.*?)\).*$

You might also like