Skip to main content
5q46n2te8jPWJY
Explorer II
June 25, 2024
Solved

FortiAnalyzer don't show implicit deny log

  • June 25, 2024
  • 2 replies
  • 1346 views

Hello,

 

I have two Fortigate Cluster, FortiManager and FortiAnalyzer. I have a problem with FortiAnalyzer that don't show implicit deny log. I already checked my implicit rules in my FortiManager to active logging for IPv4 and IPv6.

 

Hit count on my implicit rules increase correctly, despite this, FortiAnalyzer don't show deny log.

 

What have I to do ?

 

Thanks for you help !

Best answer by 5q46n2te8jPWJY

It's ok, I have to enable Local traffic log in log options on each vdom.

 

 
 

 

2 replies

AEK
SuperUser
SuperUser
June 25, 2024

Hello

Please check on your FortiGate if your implicit deny rule has logging enabled, and if you see implicit deny logs on FGT's traffic logs.

AEK
5q46n2te8jPWJY
5q46n2te8jPWJYAuthorAnswer
Explorer II
June 25, 2024

It's ok, I have to enable Local traffic log in log options on each vdom.

 

 
 

 

Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Fortinet Flag the Hack. Wednesday, August 26, 9:00 AM - 5:00 PM ET, COSM, Atlanta, GA.
Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!