Since the upgrade from 7.0 to 7.4 our FortiGate 100f No Longer Sends Traffic Reports to FortiAnalyser Cloud. It uploads Event Logs and VPN Logs and that's about it.
Is there anyway of switching this on? I can't find any logging options specifically.
Any help appreciated :)
Hi
Could you please share the following output?
config log fortianalyzer filter
sh full
BDY-FORTIGATE # config log fortianalyzer filter
command parse error before 'filter'
Command fail. Return code 1
To enable logging for all policies, just select all policies in the list, click the "pen" for the logging, and change them all to "log all". You don't need to change each one individually.
Reading between the lines I'm guessing they have added an option between 7.0 and 7.4 to select what policies to upload (makes sense) but I seem to be missing the option to actually select that.
Sounds like I might be missing a module on the Router Here (or it's disabled) 🥲
I am not seeing an option under Policy & Objects > Firewall Policy to allow me to mark it for upload. There's the "Log" but it's set to All on every Policy.
I'll have to keep digging.
I think I can see the option to disable logging (it was there)however it's set to All for everything. I can't change it because it's greyed out and just says "security fabric is enabled so logging will exempt traffic from downstream fortigate"
| User | Count |
|---|---|
| 2702 | |
| 1415 | |
| 810 | |
| 716 | |
| 455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.