You have enabled logging on your FortiGate device for Event logs and all Security logs, and you have set up logging to use the FortiGate local disk. What is the default behavior when the local disk is full?
A.
Logs are overwritten and the only warning is issued when log disk usage reaches the threshold of 95%.
B.
No new log is recorded until you manually clear logs from the local disk.
C.
Logs are overwritten and the first warning is issued when log disk usage reaches the threshold of 75%.
D.
No new log is recorded after the warning is issued when log disk usage reaches the threshold of 95%.
C is correct due to:
Page 278 Fortigate Security 7.0(New Version!!), only 75% of the disk is available to store logs, this is distributed in the existing vdoms.
diagnose sys logdisk usage -- CLI command to verify this
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
onaicul
Highly Voted 3 years, 10 months agoLionardo
Highly Voted 4 years agoatiles05
Most Recent 2 years, 8 months agomob9
2 years, 9 months agosull3y
2 years, 10 months agogboy91
3 years, 1 month agoHavij
3 years, 3 months agoambaraya
3 years, 3 months agoalexilc
3 years, 5 months agoforti_Ctes
3 years, 6 months agomsn20
3 years, 7 months agoarmandolubaba
3 years, 9 months agomahmoudlol
4 years agodbartowski
4 years agoXillar
4 years ago