Hi All,
Having a bit of a weird issue with my SRX210. It seems as all traffic logging has recently stopped. I have an SRX 100 with the exact same syslog configuration and it is logging traffic fine.
I have included the pertinant configs. * Note I tried withought the file Accepted traffic & blocked traffic, still would not work
user * {
any emergency;
}
file messages {
any any;
authorization info;
}
file interactive-commands {
interactive-commands any;
}
file accepted-traffic {
any any;
match RT_FLOW_SESSION_CREATE;
}
file blocked-traffic {
any any;
match RT_FLOW_SESSION_DENY;
}
***********
policy trust-to-untrust {
match {
source-address any;
destination-address any;
application any;
}
then {
permit {
application-services {
utm-policy custom-utm-policy;
}
}
log {
session-init;
}
}
}
Any have a clue?
Thanks,
#logging