Skip to main content
wscosta
New Member
March 22, 2018
Question

No Data on Web Usage on Local Report

  • March 22, 2018
  • 3 replies
  • 7021 views

Hi All,

 

Just want to know the prerequisite of the Data that is under Web Usage on local report of Fortigate. I currently don't see anything but all logging is enabled on the firewall.

 

Appreciate the response. Thanks!

3 replies

mahesh_secure
New Member
March 28, 2018

Hi

 

do you have any data in other reports ? or only having issue in web usage report? did you see any log in webfilter log section ?

try to set allowed web category to monitor mode in webfilter configuration and  check the same.

 

 

Regards

Mahesh

wscosta
wscostaAuthor
New Member
May 24, 2018

Hi All,

 

Also I see no WebFilter tab under Log & Report maybe this was the reason that local report has no data.

 

Anyone there experience the issue. Btw, client used Fortigate 600C running firmware 5.4.6.

 

Thanks!

darwin_FTNT
Staff
Staff
May 25, 2018

I think for web usage, have to enable application control profile on the firewall policy:

 

config firewall policy

    edit 3

        set utm-status enable   <-- enable different threat security scanning profiles

        set application-list <>    <--- specify a profile name for app control to enable         set logtraffic utm           <--- create a traffic log summary for a connection session with utm events

If a connection session is identified by application control profile as web, an app-control utm log will also be generated (aside from the traffic log when the session ends).

 

Traffic log for a single session and each utm logs generated by that session can be viewed:

 

execute log filter category 

 

Available categories: 0: traffic                <---- per connection/session summary 1: event                <---- system events like login, vpn, etc. 2: utm-virus          <---- antivirus utm event detected in the session, etc. 3: utm-webfilter 4: utm-ips 5: utm-emailfilter 7: anomaly             <---- kernel ddos event logs per session 8: voip 9: utm-dlp 10: utm-app-ctrl 12: utm-waf

 

execute log display

 

Then it is up to FortiView or FortiAnalyzer to parse these generated logs for reporting / usage statistics.

 

See Application control in the documentation for more info:

 

http://help.fortinet.com/fos50hlp/56/Content/FortiOS/fortigate-security-profiles/Application_Control/app_control_chapter.htm?Highlight=application%20control

 

Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Fortinet Flag the Hack. Wednesday, August 26, 9:00 AM - 5:00 PM ET, COSM, Atlanta, GA.