Log & Report
High Availability cluster logging
FortiGate-1000A/FA2 Administration Guide
01-28011-0254-20051115
371
To enable traffic logging for a firewall policy
You can enable traffic logging for a firewall policy. All connections accepted by the
firewall policy are recorded in the traffic log.
1
Go to
Firewall > Policy
.
2
Select the Edit icon for a policy.
3
Select Log Traffic.
4
Select OK.
5
Make sure you enable traffic log under Log Filter for a logging location and set the
logging severity level to Notification or lower.
High Availability cluster logging
When configuring logging with a High Availability (HA) cluster, configure the Primary
unit send logs to the FortiLog unit or a Syslog server. The settings will apply to the
Subordinate units.The subordinate units send the log messages to the Primary unit,
and the Primary unit sends all logs to the FortiLog unit or Syslog server.
If you configured a secure connection via an IPSec VPN tunnel between a FortiLog
unit and an HA cluster, connection is actually between the FortiLog unit and the HA
cluster primary unit.
For more information, see the
High Availability Guide
available at
http://docs.forticare.com/fgt.html
.
Log access
Log Access provides access to log messages saved to the FortiGate disk or to the
memory buffer. You can delete, view, search, and navigate logs.
On its disk, the FortiGate unit saves log messages in files. To view log messages, you
must first select the file to open. You can also delete a file, clear (remove the log
messages from) a file, or download a file in either plain text or CSV format.
You can view the log messages in a memory buffer simply by accessing the buffer.
You cannot delete or download log messages from the memory buffer.
This section describes:
•
Disk log file access
•
Viewing log messages
•
Searching log messages
Disk log file access
You can view, navigate, and download logs saved to the FortiGate disk.
Note:
FortiGate units do not save some types of logs to memory. You can view these
log messages with Log Access only if your FortiGate unit contains a hard disk drive.
Содержание FortiGate 1000A
Страница 80: ...80 01 28011 0254 20051115 Fortinet Inc FortiGate IPv6 support System Network ...
Страница 88: ...88 01 28011 0254 20051115 Fortinet Inc Dynamic IP System DHCP ...
Страница 122: ...122 01 28011 0254 20051115 Fortinet Inc FortiManager System Config ...
Страница 248: ...248 01 28011 0254 20051115 Fortinet Inc Protection profile Firewall ...
Страница 260: ...260 01 28011 0254 20051115 Fortinet Inc CLI configuration User ...
Страница 380: ...380 01 28011 0254 20051115 Fortinet Inc CLI configuration Log Report ...
Страница 392: ...392 01 28011 0254 20051115 Fortinet Inc Glossary ...