Skip to main content
Adriancho11
New Member
December 16, 2024
Question

Fortinet EMS console with a SIEM via Syslog

  • December 16, 2024
  • 1 reply
  • 1480 views

Hello

 

Community
Fortinet,


I have a question, I want to integrate the Fortinet EMS console with a SIEM via Syslog to monitor events, I want to know how it is done and what kind of events I could visualize, apart from that I want to know if it is necessary to have some Fortyanalizer in the middle or any additional product to have all the security information I need to go through my security manager as I do not have it, finally I would like to know if from the EMS console I can what kind of logs would be sent, thanks for your help.

 

Greetings

1 reply

ebilcari
Staff
Staff
December 18, 2024

Currently FCT EMS will send only system logs to an external syslog. If you want events from the FCT in endpoints you will need a FAZ as shown also in this article.

Emirjon