FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
pmeet
Staff
Staff
Article Id 277745
Description This article describes why FortiGate does not allow to mention the set source-ip in syslog settings and keeps using the Management interface as the source interface and IP.
Scope FortiGate.
Solution

When the Management Interface Reservation is turned ON under System -> HA and a Management interface is assigned this will make all the SNMP and Syslog traffic generated from FortiGate use the source IP as the management interface and the set source-ip from CLI will not be allowed:

 

HA5.PNG

 

Once the HA Management Interface Reservation is turned off, the traffic uses a correct interface to reach the syslog server and the set source-ip option is then visible.

 

HA6.PNG

 

Note:

In VDOM scenarios it is still possible to set source-ip and interface-select method even when HA Management Interface Reservation is enabled.

 

Related documents:

config log syslogd setting 

Technical Tip : Change Source IP for SYSLOG

Contributors