Fortinet black logo

New Features

Global log search across FortiAnalyzer Fabric members 7.2.1

Global log search across FortiAnalyzer Fabric members 7.2.1

The Log View pane is added to the FortiAnalyzer Fabric supervisor.

This Log View supports a global search of logs collected across FortiAnalyzer Fabric members. The supervisor displays the same information about the logs as displayed in the FortiAnalyzer Fabric member that they were collected on.

Two columns are added in the supervisor's Log View to identify where the logs were collected:

FortiAnalyzer Host Name

The host name for the FortiAnalyzer device that collected the log.

To find or edit the Host Name for a FortiAnalyzer Fabric member, go to System Settings > Dashboard > System Information in the GUI for the member device.

ADOM The ADOM that the log was generated in.

The Log View in a FortiAnalyzer Fabric supervisor does not support Log Group, Log Browse, Log Downloads, Custom View, or Chart Builder. These features are available in FortiAnalyzer Fabric members and regular FortiAnalyzer devices. For more information, see the FortiAnalyzer Administration Guide.

To use Log View in a FortiAnalyzer Fabric supervisor:
  1. Confirm you are in the FortiAnalyzer Fabric supervisor.
  2. Go to Log View.
  3. From the Device Filter dropdown, select the FortiAnalyzer Fabric members and ADOMs to display logs from, and click OK.

  4. In the search bar, type the filters to apply to the table, and click the search icon.

    The search bar supports a global search across all FortiAnalyzer Fabric members. The FortiAnalyzer Host Name and ADOM columns display where the log was originally collected in the FortiAnalyzer Fabric.

To download FortiGate archive files for security logs from a FortiAnalyzer Fabric supervisor:
  1. Confirm you are in the FortiAnalyzer Fabric supervisor.
  2. Go to Log View > FortiGate > Security > Intrusion Prevention.

    In this example, the administrator downloads archive files for intrusion prevention. The same steps can be used from other log types available under Log View > FortiGate > Security.

  3. Double-click the archive log to download.

    The log details pane displays.

  4. In the Archive field, click the download icon.

Global log search across FortiAnalyzer Fabric members 7.2.1

The Log View pane is added to the FortiAnalyzer Fabric supervisor.

This Log View supports a global search of logs collected across FortiAnalyzer Fabric members. The supervisor displays the same information about the logs as displayed in the FortiAnalyzer Fabric member that they were collected on.

Two columns are added in the supervisor's Log View to identify where the logs were collected:

FortiAnalyzer Host Name

The host name for the FortiAnalyzer device that collected the log.

To find or edit the Host Name for a FortiAnalyzer Fabric member, go to System Settings > Dashboard > System Information in the GUI for the member device.

ADOM The ADOM that the log was generated in.

The Log View in a FortiAnalyzer Fabric supervisor does not support Log Group, Log Browse, Log Downloads, Custom View, or Chart Builder. These features are available in FortiAnalyzer Fabric members and regular FortiAnalyzer devices. For more information, see the FortiAnalyzer Administration Guide.

To use Log View in a FortiAnalyzer Fabric supervisor:
  1. Confirm you are in the FortiAnalyzer Fabric supervisor.
  2. Go to Log View.
  3. From the Device Filter dropdown, select the FortiAnalyzer Fabric members and ADOMs to display logs from, and click OK.

  4. In the search bar, type the filters to apply to the table, and click the search icon.

    The search bar supports a global search across all FortiAnalyzer Fabric members. The FortiAnalyzer Host Name and ADOM columns display where the log was originally collected in the FortiAnalyzer Fabric.

To download FortiGate archive files for security logs from a FortiAnalyzer Fabric supervisor:
  1. Confirm you are in the FortiAnalyzer Fabric supervisor.
  2. Go to Log View > FortiGate > Security > Intrusion Prevention.

    In this example, the administrator downloads archive files for intrusion prevention. The same steps can be used from other log types available under Log View > FortiGate > Security.

  3. Double-click the archive log to download.

    The log details pane displays.

  4. In the Archive field, click the download icon.