Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
wscosta
New Contributor

No Data on Web Usage on Local Report

Hi All,

 

Just want to know the prerequisite of the Data that is under Web Usage on local report of Fortigate. I currently don't see anything but all logging is enabled on the firewall.

 

Appreciate the response. Thanks!

3 REPLIES 3
mahesh_secure
Contributor

Hi

 

do you have any data in other reports ? or only having issue in web usage report? did you see any log in webfilter log section ?

try to set allowed web category to monitor mode in webfilter configuration and  check the same.

 

 

Regards

Mahesh

wscosta
New Contributor

Hi All,

 

Also I see no WebFilter tab under Log & Report maybe this was the reason that local report has no data.

 

Anyone there experience the issue. Btw, client used Fortigate 600C running firmware 5.4.6.

 

Thanks!

darwin_FTNT
Staff
Staff

I think for web usage, have to enable application control profile on the firewall policy:

 

config firewall policy

    edit 3

        set utm-status enable   <-- enable different threat security scanning profiles

        set application-list <>    <--- specify a profile name for app control to enable         set logtraffic utm           <--- create a traffic log summary for a connection session with utm events

If a connection session is identified by application control profile as web, an app-control utm log will also be generated (aside from the traffic log when the session ends).

 

Traffic log for a single session and each utm logs generated by that session can be viewed:

 

execute log filter category 

 

Available categories: 0: traffic                <---- per connection/session summary 1: event                <---- system events like login, vpn, etc. 2: utm-virus          <---- antivirus utm event detected in the session, etc. 3: utm-webfilter 4: utm-ips 5: utm-emailfilter 7: anomaly             <---- kernel ddos event logs per session 8: voip 9: utm-dlp 10: utm-app-ctrl 12: utm-waf

 

execute log display

 

Then it is up to FortiView or FortiAnalyzer to parse these generated logs for reporting / usage statistics.

 

See Application control in the documentation for more info:

 

http://help.fortinet.com/fos50hlp/56/Content/FortiOS/fortigate-security-profiles/Application_Control...

 

Labels
Top Kudoed Authors