FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
ihaidar
Staff
Staff
Article Id 323069
Description This article describes the enhancement that is made in log size of system event logs.
Scope Fortigate version 6.4.x onwards 
Solution

When many addresses are added to an address group in v6.2.x, the logs will be truncated, preventing the full list from being displayed due to the log size limitation.

 

Below is an example log from firmware version 6.2.x:

The admin downloads the following system event logs to verify which addresses were added to the address group at a specific time. As shown in the below screenshot, not all of the addresses appear in the logs.

The admin tried to add approximately 100 addresses in a group, but only about half of them are appearing. 

 

System events screenshot 6.2.png

 

Below is an example log from firmware version 6.4.x onwards:

 

From the logs below, we can see that the creation of the log has been enhanced. For a single log event, fortios now creates sub-logs as a continuation which is represented with  '[001]' '[002]' which can go up to [032] lines hence the system event logs can include more output.

 

The admin can now see the full list of edited addresses that are added inside a group.

 

System events screenshot 7.0.png