Retrive Fortigate 60E syslog with SecurityOnion 2.3.70 #5320
Replies: 1 comment 6 replies
-
You should be able to use the Fortinet Filebeat module to achieve this:
https://docs.securityonion.net/en/latest/filebeat.html?#modules Then make sure to allow the port using so-firewall, etc: |
Beta Was this translation helpful? Give feedback.
6 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Uh oh!
There was an error while loading. Please reload this page.
-
Hello!
I’m working on a project and the objective is to found a solution to retrieve FortiGate Logs without using FortiAnalyzer. I’ve searched some other solutions and I’ve found SecurityOnion. I installed the eval version and I’ve tried to send those logs to SecurityOnion, but there’re things that I don’t understand:
Maybe it’s not the appropriate version I’m using. I’ve some difficulties to understand certain of those versions.
I appreciate in advance for the attention given to my questions and for the informations and advices provided. If you need more information, let me know.
P.S : Sorry if my English is not the best. I’m from Switzerland.
Beta Was this translation helpful? Give feedback.
All reactions