Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
matt2341
New Contributor

Fortigate 101F send syslog to VM in Azure or GCP

Hello.

 

I want to ask how to send log syslog from Fortigate On-Prem to Linux VM in Azure or Google Cloud (GCP) ? 

 

I have tried it but it didn't send logs, but ping is reachable from Fortigate to VM. Is is required to use P2P IPSec ? and can some one please give guidence on how to send directly with out P2P ?

 

Thank You

 

FortiGate 

1 REPLY 1
ozkanaltas
Valued Contributor III

Hello @matt2341 ,

 

If your Syslog server is accessible from the internet via the UDP/514 port, FortiGate can send a log to this server. 

 

If your server is accessible and you already configured syslog on FortiGate but this was not successful, you can try to configure source IP with your wan interface IP  in the Syslog configuration.

 

config log syslogd setting
    set source-ip x.x.x.x 
end

 

Also, you can check on FortiGate whether FortiGate sends logs or not with this command.

 

diagnose sniffer packet any 'host <Your_SYSLOG_IP> ' 4 a 

If you have found a solution, please like and accept it to make it easily accessible to others.
NSE 4-5-6-7 OT Sec - ENT FW
If you have found a solution, please like and accept it to make it easily accessible to others.NSE 4-5-6-7 OT Sec - ENT FW
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors