Hi everyone,
I am encountering an issue with FortiAnalyzer while generating my report. Many IP addresses are displayed without their corresponding hostnames.
I attempted to use Subnets, but it did not work as expected. My task:that every IP in report will has "descriptions" (They will be signed)
Does anyone know how I can achieve this? Any guidance would be greatly appreciated.
Thank you!
Hi Lutsenko
If you enabled "Resolve Hostnames" in the FGT Log Settings then FGT should be able to resolve the IP addresses from the hosts' DNS requests if they are in clear text (not TLS). In case your clients use directly the IP address to reach the destination then FGT will try resolve the hostnames via PTR records (reverse DNS).
To resolve the local IP addresses you need also to configure your FGT to resolve from your local DNS server, typically your AD server(s).
User | Count |
---|---|
2570 | |
1362 | |
796 | |
651 | |
455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.