Skip to main content
sonydarrel
New Member
April 18, 2017
Question

Cisco ASDM equivalent

  • April 18, 2017
  • 1 reply
  • 5823 views

Dears,

 

whenever a traffic is denied/allowed we can see in the Cisco ASDM  ,,As same like ASDM do fortigate has a tool to monitor the denied and allowed traffic,

 

On fortinet i can see by the debug commands but not on the GUI i went to fortiview> source and filtered by source ip which is initiating a traffic but couldn't see any thing

 

Also i tried in the section logs>forwarded traffic but couldn't find the allowed traffic whose session was closed nor the denied traffic.

 

thanks

    1 reply

    emnoc
    New Member
    April 18, 2017

    Will you have a few options

     

    1: enableglobally  log denies by the fwpolicy-id 0 under the system log settings

     

    e.g

     

    set fwpolicy-implicit-log enable 

     

    2: craft a policy # move it to the bottom of the stack and enable logging on that 

     

    sonydarrel
    New Member
    April 22, 2017

    Dear

     

    enableglobally  log denies by the fwpolicy-id 0 under the system log settings

     

    can you elaborate more i didnt understood the above lines

    emnoc
    New Member
    April 23, 2017

     

     

    config log setting     set fwpolicy-implicit-log enable

    end