If I have a firewall block rule that is spamming the log, can I disable logging for that particular rule?
Yes, edit the rule and uncheck ‘Log as firewall event if this rule is fired’ checkbox.
Thanks.
Apparently, that option only exists if it is a custom rule.
Depends on what is being blocked and showing in the log. Is it UDP traffic then you can’t as it is normal for UDP communication, is the protocol ARP, then disable anti-arp spoofing firewall setting. Is the blocked events showing source and destination port as 0? Then disable block fragmented IP traffic setting.