Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
johnlloyd_13
Contributor II

SNAT Policy Log Allowed in FGT VDOMs

hi,

i'll be creating multiple (a lot) SNAT policy in a multi-VDOM FGT which is an "F" series (1000 plus model)

my question, do i enable/allow log "all sessions" or just "security events"?

can my current platform (1000 plus F model) can handle such log?

i just want to prevent any high CPU/memory due to lots of NAT processing/cache.

image.png

 

1 Solution
dingjerry_FTNT

Hi @johnlloyd_13 ,

 

Technically, it's hard to cause high CPU/Memory usage issues due to NAT usage.

 

1) The following doc is talking about possible reasons causing high CPU:

 

https://docs.fortinet.com/document/fortigate/7.6.2/administration-guide/232929/troubleshooting-high-...

 

2) The KB is talking about something for conserve mode (Memory usage issue)

 

https://community.fortinet.com/t5/FortiGate/Technical-Tip-How-conserve-mode-is-triggered/ta-p/198580...

 

 

Regards,

Jerry

View solution in original post

11 REPLIES 11
johnlloyd_13

hi,

thanks for these links! appreciate it.

i just want to make sure it's "safe" in our FGT devices since i know our platform is "bigger" or more "beefy" model.

dingjerry_FTNT

Hi @johnlloyd_13 ,

 

It all depends on your configuration, traffic throughput, system resources, and so on.

 

For example, if your protected network is for only 10-20 users, I would say, FGT 1000F is safe enough for you.  But if all of the users are using something exhausting the system resources, such as always downloading/uploading large files/videos, large server DBs replica activities through this FGT every day, and no external log storage methods (log enabled in all firewall policies so all logs are memory based), and so on.  Eventually, your FGT will have a big chance to be experiencing high CPU / Memory usage issues.

Regards,

Jerry
Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors