Having deployed a number of C8000 series devices as SDWAN devices an enabled firewall functionality. It seems there is no way to dig into the logs via vManage, unless i am missing something.
I can see the inspect/drop graphs in the security monitoring dashboards however it doesn't actually tell you what is being dropped by src/dst ip and port/application
Really difficult to troubleshoot without it. Am i looking in the right place? Clicking around on the graph and tables yields nothing.