| Description |
This article that the syslog free-style filters do not work as configured after firmware upgrade 7.0.x or 7.2.x version from 6.4.x version.
|
| Scope | FortiGate v7.0 or v7.2+ GA releases. |
| Solution |
This is by design. The free-style filter is intended to filter specific logs per category. Other categories does not apply the filter.
show log syslogd filter
With the above configuration, all other logs will go through. but for 'attack', only 'logic 0419016384' logs may pass.
It should be set filters to include or exclude other categories. The CLI command has been changed as follows to a free-style filter.
CLI Setting:
V6.4:
config log syslogd filter
Related document:
V7.0 or v7.2 later:
config log syslogd filter
Related documents: Technical Tip: Using syslog free-style filters Technical Tip: Configuring advanced syslog free-style filters |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2026 Fortinet, Inc. All Rights Reserved.