Skip to main content
ainul
New Member
April 2, 2016
Question

Log Event User VPN

  • April 2, 2016
  • 1 reply
  • 5227 views

Dear Scao/Scapraro,

We currently need to generate a report log in Fortigate vpn authentication, but when seen it in the FortiAnalyzer log the authentication status "Logout" only, no log when the "Login", so we do not know how long the user connect to the vpn.

 

the version for FGT is v5.2.2 build642 (GA) and FAZ v5.2.1-build0662 141212 (GA)

 

Could you help me to find out this case, because we need it for audit log

 

Thank for your support

 

Rgds

 

Ainul

 

 

 

 

    1 reply

    hzhao_FTNT
    Staff
    Staff
    April 4, 2016

    Please search action=tunnel-up for vpn start up time, you can find tunnelid=xxxxxxxx in each tunnel-up log. For log out time of this vpn session, please search action=tunnel-down and tunnelid=xxxxxxxx.

     

    Regards,

    hz

     

    ainul
    ainulAuthor
    New Member
    April 5, 2016

    Hi,

    Huai Zhao,

     

    Thank for your support  ,  i will try it  first your suggest.

     

    Rgds

     

    Ainul