Created on
07-18-2025
02:13 AM
Edited on
01-02-2026
12:26 AM
By
Jean-Philippe_P
This article describes how to configure Microsoft Sentinel to receive CEF logs from FortiAnalyzer in CEF format, assuming that user has successfully deployed and integrated FortiAnalyzer to Microsoft Sentinel via Azure Monitoring Agent.
FortiAnalyzer.
Refer to this FortiAnalyzer Integration with Microsoft Sentinel for deployment and setup between FortiAnalyzer and Microsoft Sentinel via Azure Monitoring Agent (AMA).
This command is used on FortiGate to forward logs received from another FortiGate to an upstream log server, most commonly FortiAnalyzer.
Related article:
Technical Tip: How to configure and troubleshoot Log Forwarding on FortiAnalyzer
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2026 Fortinet, Inc. All Rights Reserved.