Fortinet black logo

Administration Guide

FortiAnalyzer logging

FortiAnalyzer logging

FortiAnalyzer is a remote logging server that helps keep an extra copy of logs and videos from FortiPAM.

To configure FortiAnalyzer logging:
  1. Go to Security Fabric > Fabric Connectors.

    Core Network Security opens.

  2. Select FortiAnalyzer Logging and select Edit.

    The Edit Fabric Connector window opens.

  3. In the FortiAnalyzer Settings pane, set the Status as Enabled.
  4. Enter the following information:

    Server

    Enter the server IP address or the FQDN.

    Select Test Connectivity to test the connection to the server.

    Upload option

    The option is set to Store & Upload Logs.

    Note: The option is non-editable.

    Upload interval

    Select an upload interval:

    • Daily (default)

    • Weekly

    • Monthly

    Day

    From the dropdown, select a day.

    Note: The option is only available when the Upload interval is Weekly.

    Date

    From the dropdown, select a date.

    Note: The option is only available when the Upload interval is Monthly.

    Time

    Enter a time or select the clock icon to select a time.

    Allow access to FortiPAM REST API

    Enable/disable FortiPAM REST API access (default = enable).

    Verify FortiAnalyzer certificate

    Enable/disable verifying the FortiAnalyzer certificate (default = enable).

    Note: The option is only available when Allow access to FortiPAM REST API is enabled.

  5. Click OK.
  6. In the window that opens, verify the FortiAnalyzer serial number and click Accept.
  7. Check the FortiAnalyzer Status. If the connection is unauthorized, click Authorize to log in to FortiAnalyzer and authorize FortiPAM.
To configure FortiAnalyzer logging via the CLI Example

config log fortianalyzer setting

set status enable

set server faz.fortipam.ca

end

FortiAnalyzer logging

FortiAnalyzer is a remote logging server that helps keep an extra copy of logs and videos from FortiPAM.

To configure FortiAnalyzer logging:
  1. Go to Security Fabric > Fabric Connectors.

    Core Network Security opens.

  2. Select FortiAnalyzer Logging and select Edit.

    The Edit Fabric Connector window opens.

  3. In the FortiAnalyzer Settings pane, set the Status as Enabled.
  4. Enter the following information:

    Server

    Enter the server IP address or the FQDN.

    Select Test Connectivity to test the connection to the server.

    Upload option

    The option is set to Store & Upload Logs.

    Note: The option is non-editable.

    Upload interval

    Select an upload interval:

    • Daily (default)

    • Weekly

    • Monthly

    Day

    From the dropdown, select a day.

    Note: The option is only available when the Upload interval is Weekly.

    Date

    From the dropdown, select a date.

    Note: The option is only available when the Upload interval is Monthly.

    Time

    Enter a time or select the clock icon to select a time.

    Allow access to FortiPAM REST API

    Enable/disable FortiPAM REST API access (default = enable).

    Verify FortiAnalyzer certificate

    Enable/disable verifying the FortiAnalyzer certificate (default = enable).

    Note: The option is only available when Allow access to FortiPAM REST API is enabled.

  5. Click OK.
  6. In the window that opens, verify the FortiAnalyzer serial number and click Accept.
  7. Check the FortiAnalyzer Status. If the connection is unauthorized, click Authorize to log in to FortiAnalyzer and authorize FortiPAM.
To configure FortiAnalyzer logging via the CLI Example

config log fortianalyzer setting

set status enable

set server faz.fortipam.ca

end