FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
ydong01
Staff
Staff
Article Id 328941
Description This article describes that in v7.6.0, there is a logging enhancement for the log message to tackle packet capture activity.
Scope FortiOS 7.6.0.
Solution

When the admin starts a packet capture, a system event log will be generated with log ID 0100035100.

When the admin stops a packet capture, a system event log will be generated with log ID 0100035101

 

Logs are created whenever packet capture runs in GUI using the diagnostic tab/CLI and the 'diag sniffer packet' command'.

 

Example:

Packet capture command start:

 

CLI-start.PNG

 

Packet capture start log:

 

LOG-start.PNG

 

Packet capture command stop:

 

CLI-stop.PNG

 

Packet capture stop log:

 

LOG-stop.PNG

 

Related document:

New features or enhancements