Created on
03-07-2022
10:17 PM
Edited on
07-10-2025
01:02 PM
By
Jean-Philippe_P
Description
This article describes how to send FortiManager local event logs to FortiAnalyzer.
Scope
FotiManager.
Solution
Option 1 - Enable logging through FortiManager CLI.
Related document :
Under System Settings -> Device Log Settings -> Local Device Log -> Enable 'Send the local event logs to FortiAnalyzer/FortiManager' -> Enter the FortiAnalyzer 'IP Address' and set the 'Severity Level' -> Apply.
If the event logs are not present or properly shown under Log View, run a manual SQL database rebuild for the FortiManager ADOM via the command below.
exe sql-local rebuild-adom FortiManager
On FortiManager, it is possible to filter the logging to FortiAnalyzer servers as below:
config sys locallog fortianalyzer filter
(filter)#
set Modify value.
Example: to disable the fgfm logging to syslog servers as below:
config sys locallog fortianalyzer filter
set fgfm disable
end
All valid examples:
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.