List of log types and subtypes
FortiGate devices can record the following types and subtypes of log entry information:
Type |
Description |
Subtype |
---|---|---|
Traffic |
Records traffic flow information, such as an HTTP/HTTPS request and its response, if any. |
|
Event |
Records system and administrative events, such as downloading a backup copy of the configuration, or daemon activities. |
|
UTM |
Records UTM events. |
See list of UTM log subtypes below |
UTM log subtypes
UTM Log Subtypes |
Description |
Event Type |
---|---|---|
Virus |
Records virus attacks. |
|
Web Filter |
Records web filter events. |
|
IPS |
Records intrusion prevention events. |
|
Email Filter |
Records email filter events. |
|
Anomaly |
Records intrusion attempts. |
|
VoIP |
Records voice over IP events. |
|
DLP |
Records data leak prevention events. |
|
App-CTRL |
Records intrusion attempts. Application Control log is output when a signature matches an application pattern. |
|
WAF |
Records web application firewall information for FortiWeb appliances and virtual appliances. |
|
DNS |
Records domain name server events. |
|
SSH |
Records Secure Socket Shell events. |
|
SSL |
Records detected/blocked malicious SSL connections. |
|
CIFS |
Records CIFS file filter events. |
|
File Filter |
Records file filter events. |
|