Created on
05-21-2025
12:46 AM
Edited on
05-29-2025
05:52 AM
By
markwarner
| Description | This article describes how to troubleshoot a FortiAnalyzer which does not show the filtered log information. |
| Scope | FortiAnalyzer. |
| Solution |
At FortiAnalyzer, go to Log View -> FortiGate -> Traffic -> Filter:
However, FortiAnalyzer is unable to get the information from the above filter.
At FortiAnalyzer, go to Log View -> Log Browse -> Filter:
After that, it will show (.tlog) type, which means it is a traffic log.
For example, it shows 3 (.tlog) type logs, select 1 of them and double click to go inside and filter to search it.
If all 3 (.tlog) type logs also do not show the information, it means that the FortiGate does not send (destination ip = 1.2.3.4 & source ip = 10.10.10.10) log information to FortiAnalyzer from the beginning.
Troubleshooting steps:
If no (destination ip = 1.2.3.4 & source ip = 10.10.10.10) log information is generated from FGT_A, go to the firewall policy to check it and fine-tune it.
On Fortianalyzer fortilogd status can also be checked using the following command:
diag fortilogd status |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.