Fortinet white logo
Fortinet white logo

CLI Reference

log syslogd setting

Global settings for remote syslog server.

  config log syslogd setting
      Description: Global settings for remote syslog server.
      set status [enable|disable]
      set server {string}
      set mode [udp|legacy-reliable|...]
      set port {integer}
      set facility [kernel|user|...]
      set source-ip {string}
      set format [default|csv|...]
      set priority [default|low]
      set max-log-rate {integer}
      set enc-algorithm [high-medium|high|...]
      set ssl-min-proto-version [default|SSLv3|...]
      set certificate {string}
      config custom-field-name
          Description: Custom field name for CEF format logging.
          edit <id>
              set name {string}
              set custom {string}
          next
      end
  end

config log syslogd setting

Parameter Name Description Type Size
status Enable/disable remote syslog logging.
enable: Log to remote syslog server.
disable: Do not log to remote syslog server.
option -
server Address of remote syslog server. string Maximum length: 127
mode Remote syslog logging over UDP/Reliable TCP.
udp: Enable syslogging over UDP.
legacy-reliable: Enable legacy reliable syslogging by RFC3195 (Reliable Delivery for Syslog).
reliable: Enable reliable syslogging by RFC6587 (Transmission of Syslog Messages over TCP).
option -
port Server listen port. integer Minimum value: 0 Maximum value: 65535
facility Remote syslog facility.
kernel: Kernel messages.
user: Random user-level messages.
mail: Mail system.
daemon: System daemons.
auth: Security/authorization messages.
syslog: Messages generated internally by syslog.
lpr: Line printer subsystem.
news: Network news subsystem.
uucp: Network news subsystem.
cron: Clock daemon.
authpriv: Security/authorization messages (private).
ftp: FTP daemon.
ntp: NTP daemon.
audit: Log audit.
alert: Log alert.
clock: Clock daemon.
local0: Reserved for local use.
local1: Reserved for local use.
local2: Reserved for local use.
local3: Reserved for local use.
local4: Reserved for local use.
local5: Reserved for local use.
local6: Reserved for local use.
local7: Reserved for local use.
option -
source-ip Source IP address of syslog. string Maximum length: 63
format Log format.
default: Syslog format.
csv: CSV (Comma Separated Values) format.
cef: CEF (Common Event Format) format.
option -
priority Set log transmission priority.
default: Set Syslog transmission priority to default.
low: Set Syslog transmission priority to low.
option -
max-log-rate Syslog maximum log rate in MBps (0 = unlimited). integer Minimum value: 0 Maximum value: 100000
enc-algorithm Enable/disable reliable syslogging with TLS encryption.
high-medium: SSL communication with high and medium encryption algorithms.
high: SSL communication with high encryption algorithms.
low: SSL communication with low encryption algorithms.
disable: Disable SSL communication.
option -
ssl-min-proto-version Minimum supported protocol version for SSL/TLS connections (default is to follow system global setting).
default: Follow system global setting.
SSLv3: SSLv3.
TLSv1: TLSv1.
TLSv1-1: TLSv1.1.
TLSv1-2: TLSv1.2.
option -
certificate Certificate used to communicate with Syslog server. string Maximum length: 35

config custom-field-name

Parameter Name Description Type Size
name Field name. string Maximum length: 35
custom Field custom name. string Maximum length: 35

log syslogd setting

Global settings for remote syslog server.

  config log syslogd setting
      Description: Global settings for remote syslog server.
      set status [enable|disable]
      set server {string}
      set mode [udp|legacy-reliable|...]
      set port {integer}
      set facility [kernel|user|...]
      set source-ip {string}
      set format [default|csv|...]
      set priority [default|low]
      set max-log-rate {integer}
      set enc-algorithm [high-medium|high|...]
      set ssl-min-proto-version [default|SSLv3|...]
      set certificate {string}
      config custom-field-name
          Description: Custom field name for CEF format logging.
          edit <id>
              set name {string}
              set custom {string}
          next
      end
  end

config log syslogd setting

Parameter Name Description Type Size
status Enable/disable remote syslog logging.
enable: Log to remote syslog server.
disable: Do not log to remote syslog server.
option -
server Address of remote syslog server. string Maximum length: 127
mode Remote syslog logging over UDP/Reliable TCP.
udp: Enable syslogging over UDP.
legacy-reliable: Enable legacy reliable syslogging by RFC3195 (Reliable Delivery for Syslog).
reliable: Enable reliable syslogging by RFC6587 (Transmission of Syslog Messages over TCP).
option -
port Server listen port. integer Minimum value: 0 Maximum value: 65535
facility Remote syslog facility.
kernel: Kernel messages.
user: Random user-level messages.
mail: Mail system.
daemon: System daemons.
auth: Security/authorization messages.
syslog: Messages generated internally by syslog.
lpr: Line printer subsystem.
news: Network news subsystem.
uucp: Network news subsystem.
cron: Clock daemon.
authpriv: Security/authorization messages (private).
ftp: FTP daemon.
ntp: NTP daemon.
audit: Log audit.
alert: Log alert.
clock: Clock daemon.
local0: Reserved for local use.
local1: Reserved for local use.
local2: Reserved for local use.
local3: Reserved for local use.
local4: Reserved for local use.
local5: Reserved for local use.
local6: Reserved for local use.
local7: Reserved for local use.
option -
source-ip Source IP address of syslog. string Maximum length: 63
format Log format.
default: Syslog format.
csv: CSV (Comma Separated Values) format.
cef: CEF (Common Event Format) format.
option -
priority Set log transmission priority.
default: Set Syslog transmission priority to default.
low: Set Syslog transmission priority to low.
option -
max-log-rate Syslog maximum log rate in MBps (0 = unlimited). integer Minimum value: 0 Maximum value: 100000
enc-algorithm Enable/disable reliable syslogging with TLS encryption.
high-medium: SSL communication with high and medium encryption algorithms.
high: SSL communication with high encryption algorithms.
low: SSL communication with low encryption algorithms.
disable: Disable SSL communication.
option -
ssl-min-proto-version Minimum supported protocol version for SSL/TLS connections (default is to follow system global setting).
default: Follow system global setting.
SSLv3: SSLv3.
TLSv1: TLSv1.
TLSv1-1: TLSv1.1.
TLSv1-2: TLSv1.2.
option -
certificate Certificate used to communicate with Syslog server. string Maximum length: 35

config custom-field-name

Parameter Name Description Type Size
name Field name. string Maximum length: 35
custom Field custom name. string Maximum length: 35