Fortinet white logo
Fortinet white logo

Administration Guide

Log, FortiView, and Debug

Log, FortiView, and Debug

Traffic log enhancements

  • Traffic log priority: It's now possible to set the priority of traffic logs higher that of attack logs.

  • Traffic packet payload size configurable: The maximum size of the traffic packet payload sent to log servers was a fixed value. Now you can set this maximum size yourself.

SSL error logs

In addition to disabling or enabling SSL error logs at the global level through config log attack-log, you now have the flexibility to set it for specific server policies.

FortiView Original Source

We have added a new FortiView monitor in this release — FortiView Original Sources. This monitor tracks the original IP addresses of the clients.

FortiView Log Analysis enhancement

We now support using up to four conditions to filter log items in FortiView Log Analysis. The URL filter is mandatory. The other three filters can be selected based on your needs.

Debug commands enhancements

We have introduced two debug commands in this release: diagnose debug nowaf and diagnose debug flow filter module-bypass-info.

Displaying configuration in its context

It's now possible to append grep -f <keyword> to the show or show full-configuration command to display configurations related to the search keywords. This command will not only show the lines containing the keywords but also the entire upper-level command structure associated with them. This enhancement provides a more comprehensive view of the configurations, making it easier to understand the context in which the keywords appear.

Log, FortiView, and Debug

Log, FortiView, and Debug

Traffic log enhancements

  • Traffic log priority: It's now possible to set the priority of traffic logs higher that of attack logs.

  • Traffic packet payload size configurable: The maximum size of the traffic packet payload sent to log servers was a fixed value. Now you can set this maximum size yourself.

SSL error logs

In addition to disabling or enabling SSL error logs at the global level through config log attack-log, you now have the flexibility to set it for specific server policies.

FortiView Original Source

We have added a new FortiView monitor in this release — FortiView Original Sources. This monitor tracks the original IP addresses of the clients.

FortiView Log Analysis enhancement

We now support using up to four conditions to filter log items in FortiView Log Analysis. The URL filter is mandatory. The other three filters can be selected based on your needs.

Debug commands enhancements

We have introduced two debug commands in this release: diagnose debug nowaf and diagnose debug flow filter module-bypass-info.

Displaying configuration in its context

It's now possible to append grep -f <keyword> to the show or show full-configuration command to display configurations related to the search keywords. This command will not only show the lines containing the keywords but also the entire upper-level command structure associated with them. This enhancement provides a more comprehensive view of the configurations, making it easier to understand the context in which the keywords appear.