Fortinet white logo
Fortinet white logo

Handbook

Using the event log

Downloading logs

You can download the local collection of raw log files. You might do this if you are following manual procedures for storing log data or performing ad hoc analysis or troubleshooting.

Before you begin:

  • You must have Read-Write permission for Log & Report settings.
To download logs:
  1. Go to Log & Report > Log Browsing.
  2. Complete the configuration as described in Download logs.
  3. Click the Download button.

Download logs

Settings Guidelines
Log/Sublog

Event Log:

  • Configuration
  • System
  • Admin
  • User
  • Health Check
  • SLB
  • LLB
  • GLB
  • Firewall

Security Log:

  • IP Reputation
  • DoS
  • WAF
  • GEO

Traffic Log:

  • SLB Layer 4
  • SLB HTTP
  • SLB TCPS
  • SLB RADIUS
  • GLB
  • SLB SIP
  • SLB DRP
  • SLB DNS
  • SLB RTSP
  • SLB SMTP
  • SLB RTMP
  • SLB DIAMETER
  • SLB MySQL

Script Log:

  • SLB

Aggregate Log

  • Syncflood
  • GEO
  • IP Reputation
  • WAF
Filters

Configure the filters.

Note: Filter options may vary, depending on the type and/or sub-type of the log that you select.

Using the event log

Downloading logs

You can download the local collection of raw log files. You might do this if you are following manual procedures for storing log data or performing ad hoc analysis or troubleshooting.

Before you begin:

  • You must have Read-Write permission for Log & Report settings.
To download logs:
  1. Go to Log & Report > Log Browsing.
  2. Complete the configuration as described in Download logs.
  3. Click the Download button.

Download logs

Settings Guidelines
Log/Sublog

Event Log:

  • Configuration
  • System
  • Admin
  • User
  • Health Check
  • SLB
  • LLB
  • GLB
  • Firewall

Security Log:

  • IP Reputation
  • DoS
  • WAF
  • GEO

Traffic Log:

  • SLB Layer 4
  • SLB HTTP
  • SLB TCPS
  • SLB RADIUS
  • GLB
  • SLB SIP
  • SLB DRP
  • SLB DNS
  • SLB RTSP
  • SLB SMTP
  • SLB RTMP
  • SLB DIAMETER
  • SLB MySQL

Script Log:

  • SLB

Aggregate Log

  • Syncflood
  • GEO
  • IP Reputation
  • WAF
Filters

Configure the filters.

Note: Filter options may vary, depending on the type and/or sub-type of the log that you select.