Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
fortinetforumfiokom
New Contributor II

How to enable a "Log violation traffic" in DENY policy

Hi,

I created a DENY policy (see. picture below). I tried to enable log violation traffic, but after click OK, and than reedit the policy it is switched off again. This is a normal behaviour?

 

Policy.png

 

1 Solution
ebilcari

This issue is already reported and affects the 7.4 firmware branch. It is already fixed and will be included in future releases (#985419). It is classified only as a GUI issue, if logging is enabled through CLI it will log the traffic.

- Emirjon
If you have found a solution, please like and accept it to make it easily accessible for others.

View solution in original post

14 REPLIES 14
ebilcari

This issue is already reported and affects the 7.4 firmware branch. It is already fixed and will be included in future releases (#985419). It is classified only as a GUI issue, if logging is enabled through CLI it will log the traffic.

- Emirjon
If you have found a solution, please like and accept it to make it easily accessible for others.
fortinetforumfiokom

Attention!
You have to be careful that if you reopen the rule for editing in the GUI and even if you don't change anything, you have to set the Log violation traffic switch again each time, because if you don't, the log will be turned off automaticly on exit.

ebilcari

Thanks for sharing your findings. It seems that each time the policy configurations are saved from GUI, it is wrongly interpreted like the option is unselected and will remove the line from the configuration file.

- Emirjon
If you have found a solution, please like and accept it to make it easily accessible for others.
Ashishdeep

Was this issue occurred in the previous version before moving to 7.4.3 ?

 

fortinetforumfiokom

I hadn't noticed this bug before.

Labels
Top Kudoed Authors