Log IPSec negotiation messages, SSL user authentication, administration and session messages. Record as many log messages as you can without affecting FortiGate performance. More log messages means more visibility into what's happening with the system.
Solution
Use this command to Log VPN events. config log eventfilter set vpn enable end