log : fortiguard setting
fortiguard setting
Use this command for configuring FortiGuard Analysis Service settings.
The fortiguard setting command is only available when FortiGuard Analysis and Management Service subscription-based services are enabled. The storage space is a specified amount, and varies, depending on the services requested.
config log fortiguard setting
set enc-algorithm {default | high | low | disable}
set quotafull {nolog | overwrite}
set source-ip <ipv4_addr>
set status {enable | disable}
set upload-interval <days_int>
set upload-option {enable | disable}
set upload-time <hh:mm>
enc-algorithm {default | high | low | disable}
Set encryption strength for communications between the FortiGate unit and FortiGuard.
high — use SSL with 128-bit and larger key length algorithms: DHE‑RSA‑AES256‑SHA, AES256‑SHA, EDH‑RSA‑DES‑CBC3‑SHA, DES‑CBC3‑SHA, DES‑CBC3‑MD5, DHE‑RSA‑AES128‑SHA, AES128‑SHA
low — use SSL with 64-bit or 56-bit key length algorithms without export restrictions: EDH‑RSA‑DES‑CDBC‑SHA, DES‑CBC‑SHA, DES‑CBC‑MD5
default — use SSL with high strength algorithms and these medium-strength 128-bit key length algorithms: RC4‑SHA, RC4‑MD5, RC4‑MD
disable — disable the use of SSL.
quotafull {nolog | overwrite}
Enter the action to take when the specified storage space on the FortiGuard Analysis server is full. When you enter nolog, the FortiGate unit will stop logging, and overwrite will begin overwriting the oldest file.
source-ip <ipv4_addr>
Enter the source IP for communications to FAMS.
status {enable | disable}
Enable or disable the FortiGuard Analysis service.
upload-interval <days_int>
Enter frequency of log upload.
upload-option {enable | disable}
Enable or disable logging uploading logs to FortiGuard.
upload-time <hh:mm>
Enter time to roll logs.