Fortinet white logo
Fortinet white logo

CLI Reference

config log fortiguard setting

config log fortiguard setting

Configure logging to FortiCloud.

config log fortiguard setting
    Description: Configure logging to FortiCloud.
    set conn-timeout {integer}
    set enc-algorithm [high-medium|high|...]
    set interface {string}
    set interface-select-method [auto|sdwan|...]
    set max-log-rate {integer}
    set priority [default|low]
    set source-ip {ipv4-address}
    set ssl-min-proto-version [default|SSLv3|...]
    set status [enable|disable]
    set upload-day {user}
    set upload-interval [daily|weekly|...]
    set upload-option [store-and-upload|realtime|...]
    set upload-time {user}
end

config log fortiguard setting

Parameter

Description

Type

Size

Default

conn-timeout

FortiGate Cloud connection timeout in seconds.

integer

Minimum value: 1 Maximum value: 3600

10

enc-algorithm

Configure the level of SSL protection for secure communication with FortiCloud.

option

-

high

Option

Description

high-medium

Encrypt logs using high and medium encryption.

high

Encrypt logs using high encryption.

low

Encrypt logs using low encryption.

interface

Specify outgoing interface to reach server.

string

Not Specified

interface-select-method

Specify how to select outgoing interface to reach server.

option

-

auto

Option

Description

auto

Set outgoing interface automatically.

sdwan

Set outgoing interface by SD-WAN or policy routing rules.

specify

Set outgoing interface manually.

max-log-rate

FortiCloud maximum log rate in MBps (0 = unlimited).

integer

Minimum value: 0 Maximum value: 100000

0

priority

Set log transmission priority.

option

-

default

Option

Description

default

Set FortiCloud log transmission priority to default.

low

Set FortiCloud log transmission priority to low.

source-ip

Source IP address used to connect FortiCloud.

ipv4-address

Not Specified

0.0.0.0

ssl-min-proto-version

Minimum supported protocol version for SSL/TLS connections.

option

-

default

Option

Description

default

Follow system global setting.

SSLv3

SSLv3.

TLSv1

TLSv1.

TLSv1-1

TLSv1.1.

TLSv1-2

TLSv1.2.

status

Enable/disable logging to FortiCloud.

option

-

disable

Option

Description

enable

Enable logging to FortiCloud.

disable

Disable logging to FortiCloud.

upload-day

Day of week to roll logs.

user

Not Specified

upload-interval

Frequency of uploading log files to FortiCloud.

option

-

daily

Option

Description

daily

Upload log files to FortiCloud once a day.

weekly

Upload log files to FortiCloud once a week.

monthly

Upload log files to FortiCloud once a month.

upload-option

Configure how log messages are sent to FortiCloud.

option

-

5-minute

Option

Description

store-and-upload

Log to the hard disk and then upload logs to FortiCloud.

realtime

Log directly to FortiCloud in real time.

1-minute

Log directly to FortiCloud at 1-minute intervals.

5-minute

Log directly to FortiCloud at 5-minute intervals.

upload-time

Time of day to roll logs (hh:mm).

user

Not Specified

config log fortiguard setting

config log fortiguard setting

Configure logging to FortiCloud.

config log fortiguard setting
    Description: Configure logging to FortiCloud.
    set conn-timeout {integer}
    set enc-algorithm [high-medium|high|...]
    set interface {string}
    set interface-select-method [auto|sdwan|...]
    set max-log-rate {integer}
    set priority [default|low]
    set source-ip {ipv4-address}
    set ssl-min-proto-version [default|SSLv3|...]
    set status [enable|disable]
    set upload-day {user}
    set upload-interval [daily|weekly|...]
    set upload-option [store-and-upload|realtime|...]
    set upload-time {user}
end

config log fortiguard setting

Parameter

Description

Type

Size

Default

conn-timeout

FortiGate Cloud connection timeout in seconds.

integer

Minimum value: 1 Maximum value: 3600

10

enc-algorithm

Configure the level of SSL protection for secure communication with FortiCloud.

option

-

high

Option

Description

high-medium

Encrypt logs using high and medium encryption.

high

Encrypt logs using high encryption.

low

Encrypt logs using low encryption.

interface

Specify outgoing interface to reach server.

string

Not Specified

interface-select-method

Specify how to select outgoing interface to reach server.

option

-

auto

Option

Description

auto

Set outgoing interface automatically.

sdwan

Set outgoing interface by SD-WAN or policy routing rules.

specify

Set outgoing interface manually.

max-log-rate

FortiCloud maximum log rate in MBps (0 = unlimited).

integer

Minimum value: 0 Maximum value: 100000

0

priority

Set log transmission priority.

option

-

default

Option

Description

default

Set FortiCloud log transmission priority to default.

low

Set FortiCloud log transmission priority to low.

source-ip

Source IP address used to connect FortiCloud.

ipv4-address

Not Specified

0.0.0.0

ssl-min-proto-version

Minimum supported protocol version for SSL/TLS connections.

option

-

default

Option

Description

default

Follow system global setting.

SSLv3

SSLv3.

TLSv1

TLSv1.

TLSv1-1

TLSv1.1.

TLSv1-2

TLSv1.2.

status

Enable/disable logging to FortiCloud.

option

-

disable

Option

Description

enable

Enable logging to FortiCloud.

disable

Disable logging to FortiCloud.

upload-day

Day of week to roll logs.

user

Not Specified

upload-interval

Frequency of uploading log files to FortiCloud.

option

-

daily

Option

Description

daily

Upload log files to FortiCloud once a day.

weekly

Upload log files to FortiCloud once a week.

monthly

Upload log files to FortiCloud once a month.

upload-option

Configure how log messages are sent to FortiCloud.

option

-

5-minute

Option

Description

store-and-upload

Log to the hard disk and then upload logs to FortiCloud.

realtime

Log directly to FortiCloud in real time.

1-minute

Log directly to FortiCloud at 1-minute intervals.

5-minute

Log directly to FortiCloud at 5-minute intervals.

upload-time

Time of day to roll logs (hh:mm).

user

Not Specified