Fortigate - full-final-warning-threshold <= 95%

Information

The FortiGate system memory has a limited capacity and displays only the most recent log entries. Traffic logs are not stored in the memory buffer, due to the high volume of traffic information. After all available memory is used, by default, the FortiGate unit begins to overwrite the oldest log messages. All log entries are deleted when the FortiGate unit restarts.

Solution

To set the full-final-warning-threshold, use the following command:

config log memory global-setting
set full-final-warning-threshold 95
end

See Also

https://docs.fortinet.com/document/fortigate/6.4.0/hardening-your-fortigate/612504/hardening-your-fortigate

Item Details

Category: AUDIT AND ACCOUNTABILITY

References: 800-53|AU-5(1)

Plugin: FortiGate

Control ID: 82f43bad15f11a9e0e90e41bb7b43174c27b32c1b3f58253fc25727791f083a9