Description | This article describes how to perform Content Updates on FortiSIEM. |
Scope | FortiSIEM v6.4.0 or later. |
Solution |
FortiSIEM is a distributed system, meaning that raw events can come into either the Cloud backend (with FortiSIEM Cloud deployments and the Supernode resides in the Cloud) or collector nodes(when sending local raw events to collectors). It is not mandatory to download the latest content packs to the local collectors, where content packs do not have any parsing logic applied to them, however, the best practice is to keep these as in line and updated as possible.
To perform a Content update on FortiSIEM:
|
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.