Skip to main content
mantaransingh_FTNT
Staff
Staff
December 13, 2021

Techincal Tip : FortiAnalyzer-BigData - Log4j - Mitigating CVE-2021-44228

  • December 13, 2021
  • 0 replies
  • 1019 views
Description

This article describes the Apache log4j Vulnerability's effect on FortiAnalyzer-Bigdata and how to Mitigate it.

Scope FortiAnalyzer-BigData 6.4, 7.0.
Solution

FortiAnalyzer-BD has components that utilize log4j but the impact surface is very limited.

To mitigate the vulnerability, It is possible either:

 

1) Upgrade to Special Build based on 6.4.6 or 7.0.1.

 

OR.

 

2) Run Script to mitigate the vulnerability in Live Environment without upgrading.

 

Below are the steps to run the script:

 

1) Unzip the attached Script file patch_log4j_vulnerability.zip.


2) Run the script on the Security Event Cluster Controller.


3) Stop and start all services to take effect:
From GUI, go to Cluster Manager -> Services -> Actions, select 'Stop All Services' and wait until done.

Select 'Start All Services' and wait until done.

 

Note.

If Factory Reset is performed, then the script needs to be run again.

    Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
    Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!