Adding hardware logging to a hyperscale firewall policy
Use the following command to enable hardware logging in a hyperscale firewall policy and assign a hardware logging server group to the firewall policy.
config firewall policy
edit <id>
set policy-offload {enable | disable}
set cgn-log-server-grp <group-name>
end
From the GUI:
- Go to Policy & Objects > Firewall Policy and create a new or edit a firewall policy.
- While configuring the policy, select Log Hyperscale SPU Offload Traffic.
- Select a Log Server Group.
When configuring hardware logging, the recommended or required IP addresses of the hardware logging servers that you can use with hyperscale firewall policies are the following:
|