Back=right mouse click.
Logs > Log Query > Application Control Log
Administrators can query Application Control logs if they enable the "Log Application Control events for the "Blocked" action" in the Application Control > Settings page. By default, IWSVA writes to the log every five minutes. This interval can be changed on the Application Control > Settings page.
Application Control logs provide the following information:
Time period—Displays all logs, or logs for current day, week, or month.
Blocked Applications Rules—Select from the list of Application Control rules to have those logs displayed. If more than one blocked instance occurs for the same policy, all instances will be displayed.
Sort by— Choose the order in which you want IWSVA to group the logs for display:
Date—The date and time the protocol was blocked
Protocol—Type of Web connection (HTTP or HTTPS)
Rule—The reason a given application was blocked, that is, the rule that caused the application to be blocked. Example: An Application Control policy of blocking all Instant Message (IM) applications.
User ID—ID of the user whose application was blocked
Export Logs and Reports to Excel
How are Log Files Named?
Important Log Notes