FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
rmetzger
Staff
Staff
Article Id 197218

Description

 

The following CLI commands will enable the FortiAnalyzer log GUI page on a FortiGate.

Pre-requisite: a  FortiAnalyzer must already be configured on the FortiGate log config.


Scope

 

FortiOS 4.0 MR2 and above.


Solution

 

FortiGate # config log fortianalyzer setting

FortiGate (setting) # set gui-display enable

FortiGate (setting) # end

 

The following FortiGate GUI screenshot shows the FortiAnalyzer button that is added once the FortiAnalyzer display is enabled:

 

rmetzger_FD32562_FD32562.jpg

 

NOTE: On newer versions, this command is no longer present in the CLI.

The FortiAnalyzer option can now be found under Security Fabric -> Fabric Connectors:

 

FAZ_7.4.6_1.PNG

 

And:

 

FAZ_7.4.6_2.PNG

 

The command to enable FortiAnalyzer would be as follows:

 

config log fortianalyzer set

    show

        config log fortianalyzer setting

        end

    set

    status Enable/disable logging to FortiAnalyzer.
    vrf-select VRF ID used for connection to server.

    set status enable

 

The rest of the configuration must be completed for the connection to be established. 

The entries above are the same for branches 7.2, 7.4, 7.6.

 

On branch 7.0, the GUI view is as follows:

 

FAZ_7.0.17.PNG

 

And:

 

FAZ_7.0.17_2.PNG

 

The CLI commands are the same in the newer versions.