config log fortianalyzer settingThe "localid" setting has to match the "Device Name" configured on the FortiAnalyzer for the IPSec tunnel to work.
set status enable
set server 192.168.182.120
set encrypt enable
set psksecret 123456
set localid "FG300B3908606800"
end
config log fortianalyzer setting(b) FortiOS 5.0.x and above:
set status enable
set server 192.168.182.120
set encrypt enable
set psksecret 123456
set localid "FG300B3908606800"
set upload-option realtime
end
config log fortianalyzer setting
set status enable
set server 192.168.182.120
set encrypt enable
set psksecret 123456
set localid "FG300B3908606800"
set upload-option realtime
end
The peer ID presented by the FortiGate must match the Device Name (not the device ID) as configured on the FortiAnalyzer. |
config log device(a) To check the secure connection, connect to the web based manager and verify the Lock icon on the FortiAnalyzer under All Devices.
edit FG300B3908606800 ----> device name, this must match the localid configured on the FortiGate
set type fgt
set secure psk
set psk 123456
set id FG300B3908606800 ----{ device ID
end
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.