Description |
This article describes how to maintain the original source IP when the FortiAnalyzer log Forwarding feature is enabled. This setting allows sending log packets using the original log sender's IP address when forwarding logs to external devices, in this way, external devices can receive the original logs as if they received them directly from the originating device. |
||||||||||||
Scope | FortiAnalyzer. | ||||||||||||
Solution |
Name: Input a name.
config system log-forward set fwd-log-source-ip original_ip next end
Note: Replace <id> with the ID for the log forwarding setting created in Step 3.
Note: This option can only be used with UDP 'fwd-reliable disable'.
By default setting set fwd-log-source-ip is set to 'local_ip'.
Related article: Technical Tip: How to configure and troubleshoot Log Forwarding on FortiAnalyzer |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.