FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
kcheng
Staff
Staff
Article Id 251208
Description

This article describes the reason why the Syslog setting is showing as disabled in GUI despite it having been configured in CLI.

Scope FortiGate, Syslog.
Solution

FortiGate allows up to 4 Syslog servers configuration:

 

kcheng_0-1680569330922.png

 

If the Syslog server is configured under syslogd2, syslogd3, or syslogd4 settings, the respective would not be shown in GUI.

 

In the following example, syslogd was not configured and not enabled. However, syslogd2 is configured and enabled:

 

kcheng_1-1680569330923.png

 

On the GUI, it was observed that the option of 'Send logs to syslog' is disabled:

 

kcheng_2-1680569330923.png

 

From the CLI sniffer, it was observed that FortiGate is sending logs to the Syslog server:

 

kcheng_3-1680569330925.png

 

This is an expected behavior as FortiGate GUI would show the Syslog server entry for the first Syslog device. Configuration for syslogd2, syslogd3 and syslogd4 would only be shown in CLI.

Contributors