Fortinet white logo
Fortinet white logo

System integration and support

System integration and support

The following integration is tested and supported in FortiNDR 7.0.0.

  • While FOS 6.2 and 5.6 file submission with OFTP, via the FortiSandbox field, is tested and compatible, official support for submitting files is in FOS 6.4.0 and higher.
  • FortiGate inline blocking (with AV profile) is supported in FOS 7.0.1 and higher.
  • FortiAnalyzer integration is supported in FortiAnalyzer 7.0.1 and higher.
  • FortiSIEM integration is supported in FortiSIEM 6.3.0 and higher.
  • FortiSandbox integration (API submission from FortiSandbox to FortiNDR) is supported from FortiSandbox 4.0.1 and higher.
  • FortiGate quarantine via webhook 6.4.0 and higher.
  • ICAP is supported for:
    • FortiGate 6.4.0 and higher.
    • FortiWeb 6.3.11 and higher.
    • Squid and other compatible ICAP clients.
    • FortiProxy 7.0.0.
    • FortiNAC quarantine support (v9.2.2+)

    • •FortiSwitch quarantine via FortiLink (FortiSwitch v7.0.0+ and FortiGate v7.0.5+)

    Note

    Currently FortiAnalyzer and FortiSIEM will analyse FortiNDR malware logs only. NDR logs integration is planned for later stages.

System integration and support

System integration and support

The following integration is tested and supported in FortiNDR 7.0.0.

  • While FOS 6.2 and 5.6 file submission with OFTP, via the FortiSandbox field, is tested and compatible, official support for submitting files is in FOS 6.4.0 and higher.
  • FortiGate inline blocking (with AV profile) is supported in FOS 7.0.1 and higher.
  • FortiAnalyzer integration is supported in FortiAnalyzer 7.0.1 and higher.
  • FortiSIEM integration is supported in FortiSIEM 6.3.0 and higher.
  • FortiSandbox integration (API submission from FortiSandbox to FortiNDR) is supported from FortiSandbox 4.0.1 and higher.
  • FortiGate quarantine via webhook 6.4.0 and higher.
  • ICAP is supported for:
    • FortiGate 6.4.0 and higher.
    • FortiWeb 6.3.11 and higher.
    • Squid and other compatible ICAP clients.
    • FortiProxy 7.0.0.
    • FortiNAC quarantine support (v9.2.2+)

    • •FortiSwitch quarantine via FortiLink (FortiSwitch v7.0.0+ and FortiGate v7.0.5+)

    Note

    Currently FortiAnalyzer and FortiSIEM will analyse FortiNDR malware logs only. NDR logs integration is planned for later stages.