Adding hardware logging to a hyperscale firewall policy
Use the following command to enable hardware logging in a hyperscale firewall policy and assign a hardware logging server group to the firewall policy.
config firewall {hyperscale-policy | hyperscale-policy46 | hyperscale-policy6 | hyperscale-policy64}
edit <id>
set policy-offload {enable | disable}
set cgn-log-server-grp <group-name>
end
From the GUI:
- Go to Policy & Objects and select IPv4 Hyperscale Policy, IPv6 Hyperscale policy, NAT46 Hyperscale Policy, or NAT46 Hyperscale Policy.
- While configuring the policy, select Log Hyperscale SPU Offload Traffic.
- Select a Log Server Group.
When configuring hardware logging, the recommended or required IP addresses of the hardware logging servers that you can use with hyperscale firewall policies are the following:
|