發表文章

目前顯示的是 2月, 2018的文章

Fortigate log policyid=0

FortiGate log information : traffic log with firewall policy of 0 (zero) "policyid=0" Description   FortiGate units create a firewall policy of 0 (zero) which can appear in the logs Components   All FortiGate units. Steps or Commands When viewing the FortiGate logs, you may find an entry indicating policyid="0". For example: 2008-10-06 00:13:49 log_id=0022013001 type=traffic subtype=violation pri=warning vd=root SN=179089 duration=0 user=N/A group=N/A rule=0  policyid=0  proto=17 service=137/udp app_type=N/A status=deny src=10.181.77.73 srcname=10.181.77.73 dst=10.128.1.161 dstname=10.128.1.161 src_int=N/A dst_int="Internal" sent=0 rcvd=0 src_port=137 dst_port=137 vpn=N/A tran_ip=0.0.0.0 tran_port=0 Any firewall policy that is automatically added by the FortiGate unit has a policy ID number of 0. The following are the most commonly created by the FortiGate unit The (IPsec)  policy for FortiAnalyzer  (and  FortiManager  v3.00) that i