Hello
We want to globally disable traffic log for specific service (e.g. DNS), not at policy level.
Anyone nows if we can do that on FortiGate?
"Log-level" (no / utm-only / always) of traffic sessions is an attribute of firewall policies, it cannot be configured anywhere else. If you require to not log specific traffic, you will need to create specific policies for it with logging expicitly disabled.
The only exception to this would be when using Security Fabric, which mandates enabled traffic logging in all policies.
User | Count |
---|---|
1921 | |
1144 | |
769 | |
447 | |
277 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.