FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
salmas
Staff
Staff
Article Id 425244
Description This article describes the process of getting notification of policy expiry ahead of its scheduled expiry using a one-time schedule.
Scope FortiGate.
Solution

Currently, there is no direct method of getting an alert for policy expiry before its scheduled expiry date. A one-time schedule can be used to achieve this alert notification. 

 

Follow this article to configure policy expiry: Technical Tip: Configuring a Schedule Firewall policy expiration.

 

In the policy below, expiry is set for 01/01/2026 at 11:59 PM.

 

Policy with expiry.png

Create a one-time schedule with the end date the same as the policy expiry date and enable the 'Pre-expiration event log' option.

The name of the above policy is 'Policy1', and this one-time schedule name is set as 'Policy1_Expiry'.

 

One-Time Schedule.png

Refer to the article below to see more details about the One-time schedule 'Pre-expiration event log' generation.
Technical Tip: One-time schedule pre-expiration log generation 

Create an automation Trigger for a One-time schedule event log:

 

Trigger_Event_One_Time_Schedule.png

Create an Automation action for email alert:

 

Automation_Action.png

Create an automation stitch combining Trigger and Action:

 

Automation_Stitch.png

 

Based on the one-time schedule, the system event log will be generated 24 hours prior, as shown in the screenshot below.

 

log_event.png

Upon this event log trigger, an alert will be sent to the configured email address.

 

Email.png