Created on
03-14-2022
10:59 PM
Edited on
11-01-2024
09:11 AM
By
Stephen_G
Description | This article describes the difference between 'Security Events' and 'All session' in Log Allowed Traffic in Firewall Policy. |
Scope | FortiGate. |
Solution |
Log 'Security Events' will only log Security (UTM) events (e.g. AV, IPS, firewall web filter), providing one of them has been applied to a firewall (rule) policy.
'Log all sessions' will include traffic log include both match and non-match UTM profile defined.
To edit the firewall policy logging in the web GUI:
To edit the firewall policy logging on the CLI:
config firewall policy
all Log all sessions accepted or denied by this policy. |