Hello, I want to understand some logs of WAF and I don't find any information about it the ID of LOG
Example: a WAF log with id 50140004 Generix Attacks
LOG
type=utm subtype=waf level=warning vd=root eventtype=waf-signature service=HTTP action=blocked profile="Web Application Firewall" severity=high eventid=50140004 msg="Generic Attacks" agent=Firefox/5.0 direction=request
I am curious as well.
Hello, I found some information on that link http://pub.kb.fortinet.com/ksmcontent/Fortinet-Public/current/FortiWeb_5_5/FortiWeb_5_5_5_Administra...
.
http://help.fortinet.com/fweb/570/Content/FortiWeb/fortiweb-admin/web_protection.htm
Here's an explanation of all the possible values.
Homing
CLI:
fortihost # config global
fortihost (global) # diagnose waf dump | grep 90300017
90300017 - This signature prevents attackers from obtaining file and folder names using a tilde character "~" in a get request .
User | Count |
---|---|
2035 | |
1163 | |
770 | |
448 | |
326 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.