Fortinet black logo

FortiOS Log Message Reference

8452 - MESGID_BLOCK_COMMAND

8452 - MESGID_BLOCK_COMMAND

Message ID: 8452

Message Description: MESGID_BLOCK_COMMAND

Message Meaning: FortiGate unit blocked a virus command

Type: AV

Category: FILENAME

Severity: Warning

Log Field Name

Description

Data Type

Length

action

The security action performed by AV

string

11

agent

User agent - eg. agent="Mozilla/5.0"

string

64

command

string

16

crlevel

Client Reputation Level

string

10

crscore

Client Reputation Score

uint32

10

date

Date

string

10

direction

Message/packets direction

string

8

dstintf

Destination Interface

string

32

dstintfrole

string

10

dstip

Destination IP Address

ip

39

dstport

Destination Port

uint16

5

eventtime

uint64

20

eventtype

Event type of AV

string

32

fctuid

string

32

group

Group name (authentication)

string

64

level

Log level

string

11

logid

Log ID

string

10

msg

Log message

string

policyid

Policy ID

uint32

10

profile

The name of the profile that was used to detect and take action

string

64

proto

Protocol number

uint8

3

service

Proxy service which scanned this traffic

string

5

sessionid

Session ID

uint32

10

srcintf

Source Interface

string

32

srcintfrole

string

10

srcip

Source IP Address

ip

39

srcport

Source Port

uint16

5

subtype

subtype of the virus log

string

20

time

Time

string

8

type

Log type

string

16

unauthuser

string

66

unauthusersource

string

66

url

The url address

string

512

user

Username (authentication)

string

256

vd

VDOM name

string

32

8452 - MESGID_BLOCK_COMMAND

Message ID: 8452

Message Description: MESGID_BLOCK_COMMAND

Message Meaning: FortiGate unit blocked a virus command

Type: AV

Category: FILENAME

Severity: Warning

Log Field Name

Description

Data Type

Length

action

The security action performed by AV

string

11

agent

User agent - eg. agent="Mozilla/5.0"

string

64

command

string

16

crlevel

Client Reputation Level

string

10

crscore

Client Reputation Score

uint32

10

date

Date

string

10

direction

Message/packets direction

string

8

dstintf

Destination Interface

string

32

dstintfrole

string

10

dstip

Destination IP Address

ip

39

dstport

Destination Port

uint16

5

eventtime

uint64

20

eventtype

Event type of AV

string

32

fctuid

string

32

group

Group name (authentication)

string

64

level

Log level

string

11

logid

Log ID

string

10

msg

Log message

string

policyid

Policy ID

uint32

10

profile

The name of the profile that was used to detect and take action

string

64

proto

Protocol number

uint8

3

service

Proxy service which scanned this traffic

string

5

sessionid

Session ID

uint32

10

srcintf

Source Interface

string

32

srcintfrole

string

10

srcip

Source IP Address

ip

39

srcport

Source Port

uint16

5

subtype

subtype of the virus log

string

20

time

Time

string

8

type

Log type

string

16

unauthuser

string

66

unauthusersource

string

66

url

The url address

string

512

user

Username (authentication)

string

256

vd

VDOM name

string

32