Hi everyone
Just installed my first ever Fortinet 30G (latest 7.2 firmware) and I am having some troubles with logging. I have created a virtual wire pair with a firewall policy attached to it (accept everything from anyone and anywhere, but apply AV, IPS, WebFilter etc. policies). Logging is set to "UTM" and should be local (no FortiAnalyzer).
Now, when I try to access the EICAR test file, it successfully blocks the access - however no security logs ever show up. How can I solve this?
Best regards
Andreas
Can you try the below
config antivirus profile
edit <av_profilename>
set extended-log enable
set av-virus-log en
set av-block-log en
https://community.fortinet.com/t5/Support-Forum/View-fortigate-AV-and-IPS-logs/m-p/214398
Hi @a_h ,
First of all, let's call it "FortiGate 30G", not "Fortinet 30G".
Like what @srajeswaran suggested, you may enable AV log settings. Also, you may try to use "All sessions" for logging in the firewall policy settings.
User | Count |
---|---|
2593 | |
1382 | |
800 | |
659 | |
455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.