Fortinet white logo
Fortinet white logo

New features and enhancements

New features and enhancements

Note

FortiNDR v7.4.10 is a patch release. There are no new features or enhancements.

Administrator Access Group Mapping

Administrator Access Group Mapping allows LDAP-authenticated administrators to override access profiles based on Active Directory group membership. This eliminates the need to manually create accounts with the correct access profile permissions for each machine. In addition to authentication, Administrator Access Groups can be used to assign roles to users. For example, users in an admin group may receive Read/Write access, while those in an operator group may be limited to Read Only.

CLI

  • diagnose debug application: Use this CLI to view logs for various daemons based on system mode: Sync daemon, Control (ctrl) daemon or File archive daemon.
  • diagnose system top-fd: Use this command to display the top processes with the highest number of open file descriptors.
  • execute tac report: Use this command to generate log information for debugging purposes. It runs a predefined set of CLI commands to collect diagnostic logs.
  • execute export logs: Use this command to export the FortiNDR debug logs into a single compressed archive file. This helps gather diagnostic logs in an organized manner, to facilitate issue analysis, troubleshooting, and system verification.

New features and enhancements

New features and enhancements

Note

FortiNDR v7.4.10 is a patch release. There are no new features or enhancements.

Administrator Access Group Mapping

Administrator Access Group Mapping allows LDAP-authenticated administrators to override access profiles based on Active Directory group membership. This eliminates the need to manually create accounts with the correct access profile permissions for each machine. In addition to authentication, Administrator Access Groups can be used to assign roles to users. For example, users in an admin group may receive Read/Write access, while those in an operator group may be limited to Read Only.

CLI

  • diagnose debug application: Use this CLI to view logs for various daemons based on system mode: Sync daemon, Control (ctrl) daemon or File archive daemon.
  • diagnose system top-fd: Use this command to display the top processes with the highest number of open file descriptors.
  • execute tac report: Use this command to generate log information for debugging purposes. It runs a predefined set of CLI commands to collect diagnostic logs.
  • execute export logs: Use this command to export the FortiNDR debug logs into a single compressed archive file. This helps gather diagnostic logs in an organized manner, to facilitate issue analysis, troubleshooting, and system verification.