Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Mandalorian
New Contributor III

EMS server log to FortiAnalyzer (detail info)

Hello everyone,
I am sending the logs from our EMS server directly to our FAZ as the syslog server option.

I wanted to know if the logs sent from the EMS to a FortyAnalyzer are unencrypted or are they encrypted ?
From the EMS server GUI the commands are limited, is there a command from the CLI to possibly enable encryption of the logs sent to the FAZ ?

If so, is there anything else to configure on the FAZ side ?

 

EMS settings log.jpg





FortiAnalyzer #Forti EMS

1 Solution
AEK
SuperUser
SuperUser

Hi Mandalorian

You can enable TLS encryption if you select TCP instead of UDP.

 

ems_faz_tls.png

May the force be with you.

AEK

View solution in original post

AEK
5 REPLIES 5
Anthony_E
Community Manager
Community Manager

Hello Grogu :),


Thank you for using the Community Forum. I will seek to get you an answer or help. We will reply to this thread with an update as soon as possible.


Thanks,

Anthony-Fortinet Community Team.
AEK
SuperUser
SuperUser

Hi Mandalorian

You can enable TLS encryption if you select TCP instead of UDP.

 

ems_faz_tls.png

May the force be with you.

AEK
AEK
Mandalorian
New Contributor III

Hi AEK!
Thank you for the feedback the strange thing is that I cannot find this specific information in the various admin guides or Fortinet documentation could you kindly provide me with the link or documentation page that indicates this.


THIS IS THE WAY.

Mando

AEK

I think you are right, the only mention I found is here, but with very few details.

https://docs.fortinet.com/document/forticlient/7.4.1/ems-administration-guide/55035

AEK
AEK
Mandalorian
New Contributor III

Thank you for the feedback it is a pity that the documentation on this point is very poor and not very detailed

Mando

Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors