Created on 01-31-2023 12:12 AM Edited on 09-24-2023 09:46 PM By Anthony_E
Description | This article describes how to enable logging for one-arm filter traffic. |
Scope | FortiGate. |
Solution |
Basically, with one-arm sniffer mode, it will examine, and log packets based on the configured IPS sensor and application control list.
So, if the UTM features are not enabled in one arm sniffer interface, it will not log anything in FortiGate or forward it to FortiAnalyzer/memory.
Enable the UTM features (IPS, Application Control ) on the firewall policy. Traffic sent to the interface is examined for matches to the configured IPS sensor and application control list and will be logged to FortiAnalyzer/memory. config firewall policy
|
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.