The log type traffic pending-policy enable command enables the function of recording the specified types of logs.
The undo log traffic pending-policy enable command disables the function of recording the specified types of logs.
By default, for packets in security policy pending state, security policy names are not displayed in traffic logs.
If applications are configured in security policies and the FW cannot identify applications for the first one or several packets, these packets are in security policy pending state, and the security policies are empty in traffic logs. After the log type traffic pending-policy enable command is executed, for packets in security policy pending state, traffic logs displays corresponding security policy names, which can be matched by other conditions except the application. After the FW identifies the applications of traffic, security policy names in traffic logs are updated to those matching the application condition.