Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
sridharsre
New Contributor II

What is Policy ID 0 and why lot of denied traffic on this policy?

Hi All,

 

I have a problem with Policy ID 0, which is blocking certain broadcast traffic which is generating huge size of logs.

I googled and found the following command could stop this traffic:

 

config log setting   set local-in-deny-broadcast {enable | disable}     set local-in-deny-unicast {enable | disable} end   But my question is, why is it generating this much of deny logs ? how to identify the origin of this ? Please help me ...   Firewall version: 5.0.7   Thanks a trillion in advance !!!   Regards, Sridhar Sre  
Warmest Regards, Sri Sre
Warmest Regards, Sri Sre
10 REPLIES 10
ede_pfau

In my experience, only in special cases one is interested to see denied traffic, mostly while troubleshooting. As default I would disable logging the implicit 'policy 0' traffic.


Ede


"Kernel panic: Aiee, killing interrupt handler!"
Ede"Kernel panic: Aiee, killing interrupt handler!"
Labels
Top Kudoed Authors