Up to 5.0.1 there was the field " timestamp" to grab logs using the CLI.
This field was extremly helpful to specify a certain time range:
fortigate # exec log filter dump category: traffic device: disk
start-line: 1 view-lines: 1000 max-checklines: 0...
I can confirm: in our test setup, the objects are only referenced in the
SSL deep inspection profile, which isn't in use. Still we can see that
at least some of the wildcard FQDN objects were resolved.
My colleague has opened a ticket at Fortinet and has received the
following answer: The use of wildcard FQDN addresses within firewall
policies is currently not supported. The FQDN addresses you find within
the "config firewall address" section are u...
When looking at a FGT with 5.2.4 we already thought that there might be
some changes regarding wildcard support for FQDN address objects: there
are several new objects (e.g. "*.dropbox.com" or "*.apple.com") which
are preconfigured and referenced in ...