Created on
02-11-2022
12:05 AM
Edited on
02-11-2022
01:21 AM
By
Anthony_E
Description | This article describes steps to collect the logs needed for investigating the high logdisk usage and log related problems. |
Scope | For version 6.0 and above. |
Solution |
- For Logdisk usage: Login to FortiWeb SSH by using the default 'admin' account and collect the output of the following commands (make sure to record the ssh session output to a file).
Fortiweb# get sys status
- For Traffic/attack/event logs related problems : Login to FortiWeb SSH and run the following debug commands. (please make sure to record the ssh session output to a file).
Fortiweb# diag deb reset
Reproduce the problem and wait for two minutes.
And then, turn off debugging by running the following commands.
Fortiweb# diagnose debug disable
As the logs not showing up problem could be the byproduct of high logdisk usage problem, collect the output of the commands mentioned above in the 'For Logdisk usage'.
- Along with the above files, attach the configuration backup and the system debug file. To download the system debug file, go to System -> Maintenance -> Debug -> Debug Log and Download the debug log file (refer to the screenshot added below).
- Attach all the files to the ticket. |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2023 Fortinet, Inc. All Rights Reserved.