Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
etonsrawi
New Contributor

Filter log severity sent to FAZ

Hi Everybody,

I'm currently sending logs from a Fortigate to a FortiAnalyzer and which to send only logs with the severity level prior or equal to error (3) to the Fortianalyzer, while keep logging lowest level (information, debug, notification and warning) locally on the Fortigate. Based on my search, I prepare the following config :

config log fortianalyzer filter set severity error set forward-traffic enable set set local-traffic enable set anomaly enable end

Does anybody can confirm this ? Or have already achieve this and know how it works ?

Thanks in advance.

https://omegle.onl/ vshare
1 REPLY 1
gfleming
Staff
Staff

Sounds like you have it correct. The CLI reference is here: https://docs.fortinet.com/document/fortigate/7.2.3/cli-reference/496620/config-log-fortianalyzer-fil...

 

Are you having any issues with this?

Cheers,
Graham
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors