Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Ingest system alerts using FortiEDR Connector
Could we explore the possibility of adding functionality to ingest system alerts from FortiEDR into FortiSOAR? The FortiEDR API supports reading system events, which could be leveraged for this integration.
2 REPLIES 2
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
@gurveersingh we are already having a data ingestion to fetch events from FortiEDR and create alert in FortiSOAR
Options
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
@okumbhar Currently, the connector is capable of ingesting only security alerts. Can we add the capability to also ingest system alerts, which will provide insight into component health status?
Here is the sample API endpoint to which you can query to get system events
