I'm trying to enable logging for allowed traffic.
In the downstream devices this option is greyed out.
So i figured i had put it throught in the fabric root.
After i enabled log allowed traffic in the fabric root, and applied it.
It seems to only work for the fabric root itself and not the downstream devices.
Whenever i log in to the downstream devices the option still shows as disabled and greyed out
What can i do to fix this?
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Hi @michaeldijk,
It should be synchronized from root to downstream. You can check this article: https://community.fortinet.com/t5/FortiGate/Technical-Tip-Enable-Security-Event-logging-on-policy-wi...
Regards,
So even if it doesn't show on downstream fortigates, The function is still enabled?
Hi @michaeldijk ,
If you are using Security Fabric, downstream device will follow configuration on FortiAnalyzer and FortiManager in root device, and not be able to configure by itself
Understood.
The question is why the option does not show as checked in downstream devices, but does show as checked in the root device.
im looking forward to your reply
Basically i have an 80F fortigate as Root of the fabric.
With the following log settings.
Then i have a 40F fortigate which is downstream from that specific 80f Fortigate.
But those log settings show as disabled and are grayed out
How come?
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1645 | |
1070 | |
751 | |
443 | |
210 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.