Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
FortiTowel
New Contributor

FAZ 7.x.x Correlation Event Handler using Wildcards/Pointer

Hello FortiCommunity,

 

i try to figure out is there any possibility to correlate Logs for SSL-VPN Events,

i wanna get notified (or may User Quarantied). For example when Remote-User A, etablish tunnel first with remote-ip xxx.xxx.xxx.xxx (Netherland) and 1 Hour later Remote-User A, etablish tunnel with remote-ip xyx.xyx.xyx.xyx (Brazil),

of course i could say on FGT, single user VPN Session/Tunnel, but i think normaly it should be possible to set WildCard/Pointer on FAZ, for Matching Criteria.

If someone already asked nearly the same Question, just post the Link, thanks!

 

 

Thanks for any idea

Towel

2 REPLIES 2
FortiTowel
New Contributor

Hello Vraev,

 

thank you sharing the related urls with me.

It looks like a need to talk to my Account Manager for Feature Request.

 

Cheers

FortiTowel

Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors