Technical Tip: FortiAnalyzer custom report to analysis FortiGate rules
| Description | This article describes setting up FortiAnalyzer custom report to analysis FortiGate rules. |
| Scope | FortiAnalyzer 7.x and earlier. |
| Solution | In enterprise environments, network security teams often require detailed visibility into firewall traffic to identify trends, optimize rule sets, and ensure compliance with security policies. FortiAnalyzer provides a powerful reporting engine that allows the creation of custom datasets and reports, making it possible to extract precise insights from FortiGate logs. This article demonstrates how to build a custom report in FortiAnalyzer focusing on firewall policy utilization, using two datasets that highlight traffic distribution by destination ports and by applications.
Dataset 1: Policy Traffic by Destination Port.
The first dataset provides a breakdown of sessions and traffic volume (bytes) per firewall policy, aggregated by the destination port. This allows analysts to identify which services (e.g., HTTPS, DNS, or custom ports) are most utilized within a specific policy.
|


