Skip to main content
Ninja_03092
New Member
December 18, 2024
Question

FortiAnalyzer DNS logs No record found.

  • December 18, 2024
  • 4 replies
  • 1516 views

Hello,

I am currently facing an issue with my FortiAnalyzer when trying to view DNS logs from my FortiGate. Specifically, when I navigate to the FortiView > Traffic > DNS Logs section in FortiAnalyzer and search for DNS activity, the result always shows "No record found", even though DNS traffic is expected to be logged.

Setup Details:

  • Configuration:
    • FortiGate is configured to forward logs to FortiAnalyzer.
    • Other logs (e.g., traffic logs, event logs) are appearing correctly in FortiAnalyzer.

2024-12-18_14-11.png

4 replies

dingjerry_FTNT
Staff
Staff
December 18, 2024

Hi @Ninja_03092 ,

 

First of all, make sure that there is DNS traffic passing through your FortiGate.

 

Secondly, please make sure that the firewall policy allowing this DNS traffic flow has Logging enabled.

Ninja_03092
New Member
December 19, 2024

yes we have it

dingjerry_FTNT
Staff
Staff
December 19, 2024

Can you share the firewall policy configurations?  And do you have any Hit Count for this firewall policy in the GUI?

ametkola
Staff
Staff
December 29, 2024

Hello @Ninja_03092 ,

 

Check if you can see any DNS logs recorded in Fortigate, Log&Report >> Security events >> DNS query.. If yes, you can check if the firewall policy enables logging.

 

Thank you.

ametkola

 

Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Fortinet Flag the Hack. Wednesday, August 26, 9:00 AM - 5:00 PM ET, COSM, Atlanta, GA.
Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!