Hello there,
What is the retention logs duration by default on a FGT-60E, knowing that there is no local disk on this product range ?
Thank you :)
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
You can get a week for free in Forticloud, or for not much money you can get a VM of Fortianalyzer in AWS (for 90 and below you only basically pay for the compute, the Fortianalyzer license is $1 a year I think.)
Thank you James for your reply,
I actually was wondering because my architecture is based on FGT-60E deployed on a large scale with Fortianalyzer and fortimanager in central. The question is if a link between one of the edges (FGT-60E) and Fortimanager is down, for how long the logs will be stored on the 60E?
Thank you :)
Thank you Emnoc for your reply
Quite clear now :)
No log retention measurement exist, it ALL depends on total amount of logs and size of logdisk. More traffic and more policyid with logging eq more logs storage usage. Simply put.
If you need retention, do NOT us memory or internal-disk. Setup a log collector network and push the logs to something external. Syslog, Splunk, ELK, Papertrail, Loggly, FAZ,etc....
Ken Felix
PCNSE
NSE
StrongSwan
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1733 | |
1106 | |
752 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.