config system syslog cloud settings
Use this command to configure FortiAnalyzer Cloud as the syslog destination. FortiNDR will send logs with the specified type and severity (applicable only to NDR-type logs) to the configured destination.
Syntax
config system syslog cloud settings
set status {enable, disable}
set type {event, malware, ndr, netflow}
set ndr-severity {low, medium, high, critical}
end
|
Variable |
Description |
Default |
|---|---|---|
|
status {enable, disable} |
Enable or disable sending logs to FortiAnalyzer cloud. |
disable |
|
type {event, malware, ndr, netflow} |
FortiNDR
supports three types of logs: Multiple choices are supported. |
event, malware, ndr, netflow |
|
ndr-severity {low, medium, high, critical} |
Filtering
by severity is supported for sending |
low, medium, high, critical |