Cybersecurity Forum

This forum is for all security enthusiasts to discuss Fortinet's latest & evolving technologies and to connect & network with peers in the cybersecurity hemisphere. Share and learn on a broad range of topics like best practices, use cases, integrations and more. For support specific questions/resources, please visit the Support Forum or the Knowledge Base.

New Contributor

Remote laptops

We have a bunch of laptops that never make it into an office, so they don't connect to a collector.  We have VPN, but some users only use that rarely.  We created a NAT on the firewall to the collector and installed nxlog, and pointed nxlog to the NAT IP.  This works, until that laptop gets a different IP.  The CMDB will create a new object with the same hostname, but the new IP.  We have some laptops with a dozen CMDB objects.

Is there a way to do either of these?

1.  Have the supervisor give the agent the NAT IP for the collector
2.  Make CMDB understand that IP can change and track on hostname instead

If you are running an agent, then we merge by host name and not ip. So there would be 1 entry in CMDB with the latest IP. This was done few years ago. Let me know if this does not work this way.

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.