FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
nageentaj
Staff
Staff
Article Id 232396
Description This article describes how to enable the session to start logging in to the FortiGate firewall.
Scope FortiGate.
Solution

This can be enabled on the specific firewall policy:

 

config firewall policy
    edit <id>
        set logtraffic-start enable
end

 

logs_start.PNG

 

Note:

  • 'Generate logs when the session starts' if enabled will generate two logs for one session. One at the session starts and one when the session ends.
  • Security Rating under Security Setting -> Security Posture -> Audit Logs Setting)recommends enabling this feature.
  • This feature will affect CPU and Memory utilization depending on the traffic size, logs size, etc., therefore caution is recommended when enabling this feature.
  • This feature is not recommended for small-grade devices as this will cause conserve mode. This can be enabled when troubleshooting.