Fortinet white logo
Fortinet white logo

CLI Reference

config log fortiguard setting

config log fortiguard setting

Configure logging to FortiCloud.

config log fortiguard setting
    Description: Configure logging to FortiCloud.
    set conn-timeout {integer}
    set enc-algorithm [high-medium|high|...]
    set interface {string}
    set interface-select-method [auto|sdwan|...]
    set max-log-rate {integer}
    set priority [default|low]
    set source-ip {ipv4-address}
    set ssl-min-proto-version [default|SSLv3|...]
    set status [enable|disable]
    set upload-day {user}
    set upload-interval [daily|weekly|...]
    set upload-option [store-and-upload|realtime|...]
    set upload-time {user}
end

config log fortiguard setting

Parameter

Description

Type

Size

Default

conn-timeout

FortiGate Cloud connection timeout in seconds.

integer

Minimum value: 1 Maximum value: 3600

10

enc-algorithm

Configure the level of SSL protection for secure communication with FortiCloud.

option

-

high

Option

Description

high-medium

Encrypt logs using high and medium encryption.

high

Encrypt logs using high encryption.

low

Encrypt logs using low encryption.

interface

Specify outgoing interface to reach server.

string

Maximum length: 15

interface-select-method

Specify how to select outgoing interface to reach server.

option

-

auto

Option

Description

auto

Set outgoing interface automatically.

sdwan

Set outgoing interface by SD-WAN or policy routing rules.

specify

Set outgoing interface manually.

max-log-rate

FortiCloud maximum log rate in MBps (0 = unlimited).

integer

Minimum value: 0 Maximum value: 100000

0

priority

Set log transmission priority.

option

-

default

Option

Description

default

Set FortiCloud log transmission priority to default.

low

Set FortiCloud log transmission priority to low.

source-ip

Source IP address used to connect FortiCloud.

ipv4-address

Not Specified

0.0.0.0

ssl-min-proto-version

Minimum supported protocol version for SSL/TLS connections.

option

-

default

Option

Description

default

Follow system global setting.

SSLv3

SSLv3.

TLSv1

TLSv1.

TLSv1-1

TLSv1.1.

TLSv1-2

TLSv1.2.

status

Enable/disable logging to FortiCloud.

option

-

disable

Option

Description

enable

Enable logging to FortiCloud.

disable

Disable logging to FortiCloud.

upload-day

Day of week to roll logs.

user

Not Specified

upload-interval

Frequency of uploading log files to FortiCloud.

option

-

daily

Option

Description

daily

Upload log files to FortiCloud once a day.

weekly

Upload log files to FortiCloud once a week.

monthly

Upload log files to FortiCloud once a month.

upload-option

Configure how log messages are sent to FortiCloud.

option

-

5-minute

Option

Description

store-and-upload

Log to the hard disk and then upload logs to FortiCloud.

realtime

Log directly to FortiCloud in real time.

1-minute

Log directly to FortiCloud at 1-minute intervals.

5-minute

Log directly to FortiCloud at 5-minute intervals.

upload-time

Time of day to roll logs (hh:mm).

user

Not Specified

config log fortiguard setting

config log fortiguard setting

Configure logging to FortiCloud.

config log fortiguard setting
    Description: Configure logging to FortiCloud.
    set conn-timeout {integer}
    set enc-algorithm [high-medium|high|...]
    set interface {string}
    set interface-select-method [auto|sdwan|...]
    set max-log-rate {integer}
    set priority [default|low]
    set source-ip {ipv4-address}
    set ssl-min-proto-version [default|SSLv3|...]
    set status [enable|disable]
    set upload-day {user}
    set upload-interval [daily|weekly|...]
    set upload-option [store-and-upload|realtime|...]
    set upload-time {user}
end

config log fortiguard setting

Parameter

Description

Type

Size

Default

conn-timeout

FortiGate Cloud connection timeout in seconds.

integer

Minimum value: 1 Maximum value: 3600

10

enc-algorithm

Configure the level of SSL protection for secure communication with FortiCloud.

option

-

high

Option

Description

high-medium

Encrypt logs using high and medium encryption.

high

Encrypt logs using high encryption.

low

Encrypt logs using low encryption.

interface

Specify outgoing interface to reach server.

string

Maximum length: 15

interface-select-method

Specify how to select outgoing interface to reach server.

option

-

auto

Option

Description

auto

Set outgoing interface automatically.

sdwan

Set outgoing interface by SD-WAN or policy routing rules.

specify

Set outgoing interface manually.

max-log-rate

FortiCloud maximum log rate in MBps (0 = unlimited).

integer

Minimum value: 0 Maximum value: 100000

0

priority

Set log transmission priority.

option

-

default

Option

Description

default

Set FortiCloud log transmission priority to default.

low

Set FortiCloud log transmission priority to low.

source-ip

Source IP address used to connect FortiCloud.

ipv4-address

Not Specified

0.0.0.0

ssl-min-proto-version

Minimum supported protocol version for SSL/TLS connections.

option

-

default

Option

Description

default

Follow system global setting.

SSLv3

SSLv3.

TLSv1

TLSv1.

TLSv1-1

TLSv1.1.

TLSv1-2

TLSv1.2.

status

Enable/disable logging to FortiCloud.

option

-

disable

Option

Description

enable

Enable logging to FortiCloud.

disable

Disable logging to FortiCloud.

upload-day

Day of week to roll logs.

user

Not Specified

upload-interval

Frequency of uploading log files to FortiCloud.

option

-

daily

Option

Description

daily

Upload log files to FortiCloud once a day.

weekly

Upload log files to FortiCloud once a week.

monthly

Upload log files to FortiCloud once a month.

upload-option

Configure how log messages are sent to FortiCloud.

option

-

5-minute

Option

Description

store-and-upload

Log to the hard disk and then upload logs to FortiCloud.

realtime

Log directly to FortiCloud in real time.

1-minute

Log directly to FortiCloud at 1-minute intervals.

5-minute

Log directly to FortiCloud at 5-minute intervals.

upload-time

Time of day to roll logs (hh:mm).

user

Not Specified