FortiEDR
FortiEDR automates the protection against advanced threats, pre and post-execution, with real time orchestrated incident response functionality.
YehonatanA
Staff
Staff
Article Id 388881
Description

 

This article describes how to Manage System Events in FortiEDR.

 

Scope

 

FortiEDR's console, under Administration tab -> System Events.

 

Solution

 

System Events in FortiEDR are retained indefinitely and can accumulate significantly over time, impacting system performance or database manageability.

 

Note:

  • FortiEDR does not auto-delete System Events.
  • Accumulation of these events is expected and by design.

 

As best practice, it is advised to periodically delete old System Events to maintain the internal database.

Do note that deleted System Events cannot be restored.

Before deletion, events can be exported:

  • Select event(s) -> Export - this will create an xlsx file report (example - System_Events_Report.xlsx).

 

Export System Events.png

  • To delete System Events, select event(s) -> select Delete.

 

Delete System Events.png

For further information regarding System Events, refer to System events - FortiEDR 6.2.0 administration guide.

Contributors