how generate report based on fw action : Block,Denied,Dropped

how generate report based on fw action : Block,Denied,Dropped

hi 
i have 3 fortigate 6.4, how can i generate specific report to get last 24 hour traffic, that FW action to thoese traffic was denied,blocked or dropped ?
here is example of syslog traffic.

<13>date=2020-10-09 time=14:02:02 devname="XXXXXX-FG600E" devid="XXXXX" logid="0001000014" type="traffic" subtype="local" level="notice" vd="root" eventtime=1602239522584201693 tz="+0300" srcip=XXXXXXXXX srcport=20278 srcintf="port1" srcintfrole="undefined" dstip=XXXXXXXXXX dstport=7547 dstintf="unknown0" dstintfrole="undefined" srccountry="XXXXXXXXXXX" dstcountry="Iran, Islamic Republic of" sessionid=1833468759 proto=6 action="deny" policyid=0 policytype="local-in-policy" service="tcp/7547" trandisp="noop" app="tcp/7547" duration=0 sentbyte=0 rcvdbyte=0 sentpkt=0 appcat="unscanned" crscore=5 craction=262144 crlevel="low"
 
              New to ADManager Plus?

                New to ADSelfService Plus?