Fortinet black logo

Administration Guide

FortiAnalyzer logging

FortiAnalyzer logging

FortiGate CNF instance logs can be sent to FortiAnalyzer for analysis.

To send logs to FortiAnalyzer:

  1. In the FortiGate CNF console, create a new instance with Log Type set to FortiAnalyzer and the FortiAnalyzer IP entered.

    Tooltip

    After the instance is created, the Source IP field in the CNF Instances edit form displays the public IP address through which all logs for this instance are sent.

    You can add this IP address to your allowlist to accept logs for this FortiGate CNF instance.

  2. In FortiAnalyzer, go to Device Manager > Unauthorized Devices.

  3. Select the FortiGate CNF instances and click Authorize.

  4. Click OK.

    FortiAnalyzer adds the FortiGate CNF instance and begins receiving logs.

    If the FortiGate CNF instance is authorized but logs are not received, FortiAnalyzer displays an error.

FortiAnalyzer logging

FortiGate CNF instance logs can be sent to FortiAnalyzer for analysis.

To send logs to FortiAnalyzer:

  1. In the FortiGate CNF console, create a new instance with Log Type set to FortiAnalyzer and the FortiAnalyzer IP entered.

    Tooltip

    After the instance is created, the Source IP field in the CNF Instances edit form displays the public IP address through which all logs for this instance are sent.

    You can add this IP address to your allowlist to accept logs for this FortiGate CNF instance.

  2. In FortiAnalyzer, go to Device Manager > Unauthorized Devices.

  3. Select the FortiGate CNF instances and click Authorize.

  4. Click OK.

    FortiAnalyzer adds the FortiGate CNF instance and begins receiving logs.

    If the FortiGate CNF instance is authorized but logs are not received, FortiAnalyzer displays an error.