Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Fabricio
New Contributor

AV database updated by scanunit

Hi,

 

My FortiWifi60D send me any e-mails that this text:

 

Message meets Alert condition

The following critical firewall event was detected: AV database updated by scanunit.

date=2015-09-02 time=14:57:13 devname=UL-FW2 devid=########### logid=0100032119 type=event subtype=system level=critical vd="root" logdesc="AV database updated by scanunit" user="n/a" ui="n/a" action=update msg="Scanunit initiated a virus engine/definitions update"  

 

The Av Definition is updated.

 

Can help me ?

Fabri­cio Castro Maluf Analista de Infraestrutura

Fabri­cio Castro Maluf Analista de Infraestrutura
1 REPLY 1
neonbit
Valued Contributor

Hi, this is a message informing you that the anti virus database has been updated (which is normal).

 

I'm guessing that you're getting these because your alert filter has been enabled based on severity, and the severity level is at least critical (pls see pic).

 

Unless you really want to see when the AV db gets updated, I would recommend disabling the severity logging (or at least change it to emergency). You can then enable the specific alerts (like IPS, virus, VPN going down) so that you'll only get the ones that you really need.

Labels
Top Kudoed Authors