Hi,
I am trying to integrate Kaspersky Security Center with Fortisiem. I have enabled syslog on Kaspersky with port 514 UDP, but I couldn't find any logs on Fortisiem.
Hi Yaseen,
Could you search by any hostname/IP or keyword in GUI and first check if logs are reaching SIEM.
Collect a tcpdump on the FortiSiem using below commands:
# tcpdump -i any "host x.x.x.x" -vvv -w Traffic.pcap //x.x.x.x --- is the server IP . Export the pcap and review it.
 
					
				
				
			
		
Welcome to your new Fortinet Community!
You'll find your previous forum posts under "Forums"
| User | Count | 
|---|---|
| 75 | |
| 25 | |
| 15 | |
| 10 | |
| 10 | 
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.