Description | This article describes that in some cases, the user may need to filter some countries out of the logs to save space on disk and for FortiAnalyzer. It will explain how to use freestyle logging to filter out 2 countries for 2 specific policies. |
Scope | FortiGate v7.2, v7.4. |
Solution |
Here is the setting needed for this to work:
config log disk filter config free-style edit 1 set category traffic set filter "(((policyid 3) or (policyid 2)) and ((dstcountry \"United States\") or (dstcountry Canada)))" set filter-type exclude next end end
Related article: |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.