log : fortiguard setting
 
fortiguard setting
Use this command for configuring FortiGuard Analysis Service settings.
 
The fortiguard setting command is only available when FortiGuard Analysis and Management Service subscription-based services are enabled. The storage space is a specified amount, and varies, depending on the services requested.
Syntax
config log fortiguard setting
set enc-algorithm {default | high | low | disable}
set quotafull {nolog | overwrite}
set source-ip <ipv4_addr>
set status {enable | disable}
set upload-interval <days_int>
set upload-option {enable | disable}
set upload-time <hh:mm>
end
Variable
Description
Default
enc-algorithm {default | high | low | disable}
Set encryption strength for communications between the FortiGate unit and FortiGuard.
high — use SSL with 128-bit and larger key length algorithms: DHE‑RSA‑AES256‑SHA, AES256‑SHA, EDH‑RSA‑DES‑CBC3‑SHA, DES‑CBC3‑SHA, DES‑CBC3‑MD5, DHE‑RSA‑AES128‑SHA, AES128‑SHA
low — use SSL with 64-bit or 56-bit key length algorithms without export restrictions: EDH‑RSA‑DES‑CDBC‑SHA, DES‑CBC‑SHA, DES‑CBC‑MD5
default — use SSL with high strength algorithms and these medium-strength 128-bit key length algorithms: RC4‑SHA, RC4‑MD5, RC4‑MD
disable — disable the use of SSL.
default
quotafull {nolog | overwrite}
Enter the action to take when the specified storage space on the FortiGuard Analysis server is full. When you enter nolog, the FortiGate unit will stop logging, and overwrite will begin overwriting the oldest file.
overwrite
source-ip <ipv4_addr>
Enter the source IP for communications to FAMS.
0.0.0.0
status {enable | disable}
Enable or disable the FortiGuard Analysis service.
disable
upload-interval <days_int>
Enter frequency of log upload.
 
upload-option {enable | disable}
Enable or disable logging uploading logs to FortiGuard.
disable
upload-time <hh:mm>
Enter time to roll logs.