Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
JohnGeorge
New Contributor

Fortigate and Syslog Question

-Fortigate 300D

-Firmware 5.2.6 build 711

 

Logs are being sent to a Syslog server, and appear to be Information severity/priority level. This is way too much logging. I would like to drop this down to Notification or Warning level. In the GUI or CLI, I don't see a way to adjust the level, only enable/disable "Endpoint Event," "Router Activity Event, "VPN Activity event" and so on for the VDOMs.  How can the logging level for Syslogs on the Fortigate be adjusted, or is it a matter of filtering what gets logged at the Syslog server?

1 REPLY 1
Jeff_FTNT
Staff
Staff

You may go to CLI :

config  log  syslogd filter   FG200B3910600188 (filter) # get severity            : information forward-traffic     : enable local-traffic       : enable multicast-traffic   : enable sniffer-traffic     : enable anomaly             : enable netscan-discovery   : enable netscan-vulnerability: enable voip                : enable

Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors