FortiAnalyzer Storage
Hi,
We are going to deploy FortiAnalyzer VM and not sure how much HDD size we should use.
As per the link below we can calculate the estimate HDD size using the formula HDD=LR*(RA/5+3*RR)*1.1.
We've purchased 100 gb/day license and if we want to calculate based on Maximum license size the HDD size will be HDD=100*(365/5 + 3*90)*1.1 = 37 TB and it's a very big storage size.
We understand we should calculate based on log/day but right now only one pair of FortiGate is sending the log to FortiAnalyzer , so we cannot make estimation.
Later there will be more than 20 FortiGate sent to the same FortiAnalyzer.
What should we consider estimating the VM HDD sizing in this case?
And as per below link, the Storage can be calculated based on log/sec. How many log/sec will need to use up 100Gb per day license each day.
How is 100Gb per day license calculated? Is it based on Archive log or Analytic compressed log or Analytic uncompressed log?
Appreciate any suggestions on this.
Thank you so much
