Hot!Sending logs from FAD to FAZ

Author
aagrafi
Gold Member
  • Total Posts : 132
  • Scores: 4
  • Reward points: 0
  • Joined: 2016/03/09 01:47:25
  • Status: offline
2017/12/05 10:48:07 (permalink)
0

Sending logs from FAD to FAZ

Hello,
 
In the training notes of FortiADC, it is stated that FAD logs can be sent to FAZ. However in the FAD there is specific button for registering FAD to FAZ. I'm assuming that FAD can only send logs to FAZ only using syslog, but I'm not sure. Can somebody confirm, or tell me if there is some other way to send logs from FAD to FAZ?
 
Thanks
Andreas
#1
chall_FTNT
skyhigh
  • Total Posts : 233
  • Scores: 19
  • Reward points: 0
  • Joined: 2003/11/28 16:19:30
  • Status: offline
Re: Sending logs from FAD to FAZ 2017/12/05 10:57:20 (permalink)
0
FortiADC is not a recognized Fortinet device type by FortiAnalyzer at this time.  But FortiAnalyzer can accept syslog logging from FortiADC.
#2
aagrafi
Gold Member
  • Total Posts : 132
  • Scores: 4
  • Reward points: 0
  • Joined: 2016/03/09 01:47:25
  • Status: offline
Re: Sending logs from FAD to FAZ 2017/12/06 00:03:39 (permalink)
0
Thanks for the reply. In that case, what level/quality of analysis/reporting/queries/etc. can we expect from the FAZ regarding those logs, considering that the FAD has sent them as raw log data? Also, do we need to create a separate ADOM to accept these logs?
 
Andreas
#3
chall_FTNT
skyhigh
  • Total Posts : 233
  • Scores: 19
  • Reward points: 0
  • Joined: 2003/11/28 16:19:30
  • Status: offline
Re: Sending logs from FAD to FAZ 2017/12/06 08:29:13 (permalink)
0
As long as you enabled ADOMS, there is a default ADOM for syslog traffic.
 
In the FortiAnalyzer Release Notes, see Product Integration and Support >> Feature support.  It shows that LogView & Event Management are supported for Syslog.  But not FortiView or Reports.
#4
Jump to:
© 2018 APG vNext Commercial Version 5.5