Fortigate Traffic Log Fields, Introduction Before you begin What's new Log types and subtypes Type Subtype List of log types and subtypes FortiOS priority levels Log field format Log schema structure Log message fields Log ID numbers Log ID definitions FortiGuard web filter categories CEF support FortiOS to CEF log field mapping guidelines CEF priority levels Examples of CEF support Traffic log support for CEF Event log Log field format Log Schema Structure Log message fields Log ID numbers Log ID definitions FortiGuard Web Filter Categories CEF Support FortiOS to CEF log field mapping guidelines CEF priority levels Examples of CEF support UTM Extended Logging Enabling extended logging Log Messages Anomaly App AV CIFS DLP DNS Email Event FILE-FILTER GTP ICAP Jun 9, 2026 · DescriptionThis article describes the conditions under which FortiGate displays machine accounts in the format DOMAIN\\HOSTNAME$ in traffic logs and user identity reports, instead of the authenticated human user name. Port Scanning Port scanning is a technique used by attackers to identify open ports on a network. Following is an example of a traffic log message in raw format: date=2017-11-15 time=11:44:16 logid="0000000013" type Apr 8, 2022 · Description The article describes how to add or delete a log field from the GUI. Solution Go to Log & Report -> Forward Traffic', move the mouse pointer to the 'Data/Time' column and the 'Configure Table' setting button will be prompted out as shown in the screensho FortiGate fundamentals and principles involve high security infrastructure and provide a secure set up to the client. There are fields that I often have questions about but finding a translation or a meaning to the fields has been difficult. FortiGate Firewall is the most respected and highly used security product in the market. Secure Networking Hybrid Mesh Firewall FortiGate/FortiOS FortiGate-5000 | 6000 | 7000 A report gathers all the log information that it needs, then presents it in a graphical format with a customizable design and automatically generated charts showing what is happening on the network. Reports can be generated on FortiGate devices with disk logging and on FortiAnalyzer devices. 0. Is there a rosetta stone or some sort of definition list of the Fortigate log fields? My FortiGates are setup to send logs which eventually end up in Splunk. Useful links:Fortinet DocumentationFortiGate log message references for various firmware versions can be found at https://docs. . In this blog post, we will discuss how to detect attacks using FortiGate firewall logs with log samples and attack examples. 5 • June 2026 FortiGate 60E Configuration Guide | Home Lab | June 2026 1. What Is a Firewall and Why Do You Need One? Before diving into configuration it is important to understand what a firewall actually does and why it Sample logs by log type This topic provides a sample raw log for each subtype and the configuration requirements. cwujp, yn, eoarmkp, pjesj, gk, hfc, dgw, rwt2rdc, ksjhdj, dkn93d,