Technical Tip: How to export JSON file from a Security event in FortiEDR manager version 7 (new UI)
Description
This article describes how to export a JSON file from a security in the latest Manager version (v7 new UI).
Scope
How to Export a Security Event JSON File in Manager v7 (New Interface).
Solution
Steps to export a Security Event JSON File in manager v7 (new UI).
To generate and download a JSON file for a security event, follow these instructions:
-
Sign in to the Management Console:
Use the login credentials to access the management console. Ensure that the account has the necessary permissions to perform this task. -
Go to the Incidents Section
Locate and open the Incidents tab within the interface.

Expand Event Details:
-
Find and Open the Security Event.
Identify the specific security event desired to be viewed and select it to reveal more details. -
Expand the Event Information.
Select the triangle icon located to the left of the event's checkbox. This will expand the view, showing the process flow of the event (similar to the Advanced tab in Manager v6). -
Open the Investigation Window.
Select Investigate to launch a new window for further analysis.

 
  6. Select the event to download the JSON file:
- In the new Investigation window, select Event Analysis -> expand the Export menu by selecting the 3 dots next to the Export button -> Select JSON to trigger an automatic download.
- Add the exported JSON file to the support ticket for further analysis.

Additional information is available in the FortiEDR administration guide:
