Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Abdal_opr
New Contributor

Disable Logging for specific Policy Rules for device in Security Fabric

FG-Version: 7.2.10

 

Hi Community,

 

I’m looking for help on how to disable logging for specific policy rules in Fortigate devices that are part of a security fabric. I’ve tried changing the rules, but it hasn't worked.

 

Has anyone figured this out? Any advice would be really appreciated!

 

Thanks!

3 REPLIES 3
AEK
SuperUser
SuperUser

Hi Abdal

This command will let you customize the logging of each policy.

config system csf
set configuration-sync local
end

But please check this tech tip for more details and for the impact.

https://community.fortinet.com/t5/FortiGate/Technical-Tip-The-impact-of-set-configuration-sync-local...

Hope it helps.

AEK
AEK
Abdal_opr
New Contributor

Thank you, but I would like to configure this on the root firewall. Is this possible, and would it have any negative impacts in this case?

 

Thank you for your response.

AEK

I already tested it and I found no impact on the traffic or on anything else related to the production.

However I know that the default is to log all traffic logs because with FortiAnalyzer (or other equipment like SIEM) it is recommended to send all logs without exception in order to do a better correlation and analysis.

AEK
AEK
Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors