Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
ns4
New Contributor

FortiEDR - Exporting threat hunting to Splunk

Hello,
I wanted to consult with you about the option of exporting all events (under threat hunting) from FortiEdr (5.2.0) to Splunk.
I establish to pass security events, system events and audit trail with the syslog option, but it is not efficient enough.
I wish to pass all events (under threat hunting) to Splunk, with maximum data. Is there a way to do so?
 
 
Thanks!
 
1 REPLY 1
Stephen_G
Moderator
Moderator

Hi ns4,

 

Thanks for using our forum! We'll try to get you an answer as soon as we can.

 

If anybody seeing this has any ideas, feel free to contribute!

Stephen - Fortinet Community Team
Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors