Cybersecurity Forum

This forum is for all security enthusiasts to discuss Fortinet's latest & evolving technologies and to connect & network with peers in the cybersecurity hemisphere. Share and learn on a broad range of topics like best practices, use cases, integrations and more. For support specific questions/resources, please visit the Support Forum or the Knowledge Base.

SINI_FTNT
Staff
Staff

A whole new way to visualize, respond and mitigate your network security data

Thanks

Sinisa Gracanin
Systems Engineer UK&I
FORTINET— High Performance Network Security
e: sgracanin@fortinet.com<mailto:sgracanin@fortinet.com>
m: +44 7967 50 50 12
skype: sinisa.gracanin

From: Wayne Hall via sdn_security.pub [mailto:sdn_security.pub@fuse-lists.fortinet.com]
Sent: 23 February 2016 18:51
To: sdn_security.pub@fuse-lists.fortinet.com
Subject: [sdn_security.pub] - RE: A whole new way to visualize, respond and mitigate your network security data


No I did not. At this point I've left the integration to the customer, who has a strong partnership with Splunk themselves.

-----End Original Message-----
1 REPLY 1
SINI_FTNT
Staff
Staff

Thanks Cynthia,

At this point it is only query. A customer use Splunk internally to collect the FortiGate logs and provide them with security alerts. They’ve had a demonstration from Splunk where they were using PaloAlto firewalls which were able to receive a command directly from Splunk in order to block a suspicious IP address automatically.
They were asking if this is possible to be achieved with Fortinet and how. What does Active Response require in order to work?

Thanks

Sinisa


Sinisa Gracanin
Systems Engineer UK&I
FORTINET— High Performance Network Security
e: sgracanin@fortinet.com<mailto:sgracanin@fortinet.com>
m: +44 7967 50 50 12
skype: sinisa.gracanin

From: Cynthia Hsieh via sdn_security.pub [mailto:sdn_security.pub@fuse-lists.fortinet.com]
Sent: 23 February 2016 21:11
To: sdn_security.pub@fuse-lists.fortinet.com
Subject: [sdn_security.pub] - RE: A whole new way to visualize, respond and mitigate your network security data


The Active Response was a prototype we did with splunk. We have a demo instance in engineering lab to show the interaction how policy is configured and remediated in a full loop through FortiGate API.

-----End Original Message-----
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.