Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
aguerriero
Contributor II

syslogd override source-ip missing from 7.2

For vdom syslogd destinations the below link states that I can change the syslog source ip address, but the setting is not available in 7.2.4 and 7.2.5 on a 1500D or 1100E.

I have firewalls running 6.4 and the source-ip is an available setting.

screenshot from 6.4

Capture6.4.PNG

 

Screenshot from 7.2.5

Capture7.2.PNG


https://community.fortinet.com/t5/FortiGate/Technical-Tip-Change-Source-IP-for-SYSLOG/ta-p/230218

13 REPLIES 13
aguerriero

I guess if that is how it is going to be. I just have to make configuration changes when I update my firewalls to 7.X.

This requires adding IP addresses and SAs to our ipsec interface tunnels just to get the logging to work. We have no other operational requirement to have an IP address assigned to the ipsec interface aside from syslog traffic. 

aguerriero

Here are a couple things. Some hardware platforms have the option available on 7.2.5.

1500D 7.2.5 (option missing)

1100E 7.2.5 (option missiing)

200F 7.2.5 (option missing)

________________________________

101E 7.2.5 (option available)

200E 7.2.5 (option available)

funkylicious
SuperUser
SuperUser

I think you can set it from Local Out Routing .

"jack of all trades, master of none"
"jack of all trades, master of none"
Faiza_Emam_Delhi
Contributor II

Hello ,

I apologize for the confusion. It looks like the "override source-ip" feature for syslogd destinations is not available in FortiOS 7.2. This feature was available in previous versions of FortiOS, including FortiOS 6.4.

You can still configure syslogd destinations in FortiOS 7.2 by specifying the destination IP address and port number. However, the source IP address used for sending syslog messages will be the IP address of the interface that the syslogd traffic is sent out from.

If you need to use a specific source IP address for sending syslog messages, you may need to use a different version of FortiOS or use a different method for sending syslog messages, such as using a syslog relay server.

I hope this helps. Let me know if you have any further questions.

Thanks & Regards,
Faizal Emam
Thanks & Regards,Faizal Emam
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors