Firewall Filter - Ensure the last term, default-deny, includes the syslog option
Information
Finally, configure the default deny term to discard and log all traffic. The log option saves the packet header information in a buffer on the Packet Forwarding Engine (PFE) and the syslog option stores the packet header information on the Routing Engine.
Solution
Configure the firewall engine to log denied traffic. user@host# edit firewall family inet filter <NAME> user@host# set term default-deny then syslog