He Experts, I would like to save only utm log to local disk and send all
others to FAZ for further analysis. I found a solution that set the log
disk filter to severity warning and default for "log fortianalyzer
setting", like this:config log disk fi...
Does anyone know the system event log whether satisfy this log retention
policy? I can see some 7 days ago system log even the log retention
policy is default.
Hi Debbie, Sorry for delay response. I tested that before, it will
affect the UTM log if "set forward-traffic" to disable. Both Forwarding
log and UTM log gone from FG disk.