FortiAnalyzer
FortiAnalyzer can receive logs and Windows host events directly from endpoints connected to EMS, and you can use FortiAnalyzer to analyze the logs and run reports.
mkannan
Staff
Staff
Article Id 195306
Description
This article explains how to filter multiple IP addresses and entire subnet.

Scope


Solution
On the FortiAnalyzer:
  -  Go to
Reports > All Reports > Bandwidth and Applications Report.
  -  Add Filter
  -  Specify Log Field. In this example Destination Interface (dstintf) was selected.
  -  Filter Entire Subnet.


Similar steps can be followed for filtering a single IP by filtering Destination IP or Source IP.




Contributors