Fortigate - full-first-warning-threshold <= 75%

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

The FortiGate system memory has a limited capacity and displays only the most recent log entries. Traffic logs are not stored in the memory buffer, due to the high volume of traffic information. After all available memory is used, by default, the FortiGate unit begins to overwrite the oldest log messages. All log entries are deleted when the FortiGate unit restarts.

Solution

To set the full-final-warning-threshold, use the following command:

config log memory global-setting
set full-first-warning-threshold 75
end

Item Details

Category: AUDIT AND ACCOUNTABILITY

References: 800-53|AU-5(1)

Plugin: FortiGate

Control ID: 024b6301a132951739bc0de39056c38255e0fc13c0db0aa6f4f154f39e9a7b5f