Configuring NAT session logging

NAT session logging records NAT session information, including translation information and access information.

A NAT device generates NAT session logs for the following events:

To enable NAT session logging:

Step

Command

Remarks

1. Enter system view.

system-view

N/A

2. Enable NAT logging.

nat log enable [ acl { ipv4-acl-number | name ipv4-acl-name } ]

By default, NAT logging is disabled.

3. Enable NAT session logging.

  • For NAT session establishment events:
    nat
    log flow-begin

  • For NAT session removal events:nat log flow-end

  • For active NAT flows:nat log flow-active minutes

By default, NAT session logging is disabled.