Description |
This article describes the expected behavior when it is not possible to configure 'set source-ip' and 'set interface-select-method' under FortiAnalyzer or any other syslog server settings. |
Scope | FortiGate, SD-WAN. |
Solution |
This issue happens only with the HA-Cluster. Check the ha configuration with the command 'show system ha', and it will be possible to see that 'ha-direct' is enabled.
The ha-direct is needed to use the configured management interface which is configured in the HA setting under 'config ha-mgmt-interfaces' to send log messages to FortiAnalyzer and remote syslog servers, and send SNMP as explained in this KB article: Technical Tip: Sending messages (logs, SNMP, RADIUS) directly from the HA management interface. In this case, it will not be possible to configure 'set source-ip' and 'set interface-select-method'.
To configure another interface to communicate with FortiAnalyzer and remote syslog servers there are two solutions:
|
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.