Log, FortiView, and Debug
-
Traffic log priority: It's now possible to set the priority of traffic logs higher that of attack logs.
-
Traffic packet payload size configurable: The maximum size of the traffic packet payload sent to log servers was a fixed value. Now you can set this maximum size yourself.
In addition to disabling or enabling SSL error logs at the global level through config log attack-log
, you now have the flexibility to set it for specific server policies.
We have added a new FortiView monitor in this release — FortiView Original Sources. This monitor tracks the original IP addresses of the clients.
FortiView Log Analysis enhancement
We now support using up to four conditions to filter log items in FortiView Log Analysis. The URL filter is mandatory. The other three filters can be selected based on your needs.
We have introduced two debug commands in this release: diagnose debug nowaf
and diagnose debug flow filter module-bypass-info
.
Displaying configuration in its context
It's now possible to append grep -f <keyword>
to the show
or show full-configuration
command to display configurations related to the search keywords. This command will not only show the lines containing the keywords but also the entire upper-level command structure associated with them. This enhancement provides a more comprehensive view of the configurations, making it easier to understand the context in which the keywords appear.