Skip to main content
jofranbasco
New Member
November 5, 2018
Question

FortiAnlayzer logs incomplete

  • November 5, 2018
  • 0 replies
  • 1947 views

Hi Everyone,

 

I am currently new to this forum, we are currently using FortiGate 1200D which forward its logs to event logs particularly in admin changes to fortianalyzer. Upon extracting the system logs from the FortiAnalyzer, some of the policy changes are incomplete. is it possibly because it reached its maximum character length? is there a way to increase the maximum character length?

 

Sample Only: 

cfgattr="srcaddr[Streaming Jers chat >Streaming Jers chat 13F

 

-the event is not completed, this is particularly in cfgattr

 

 

Thank you,

Newbie