Hello,
My question is how can I compare the logs sent from a Gortigate FW in a specific date and the logs received if the FortiAnalyzer in the same date?
Can I do an extract for the "Forwardin logs" in the FW and compare it with an extract from the FortiAnalyzer for the same date? and if I have the same number of line, I will judge that they're no problem in sending/receiving logs?
or they are a better way?
thank you
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Hi badrgb,
you could export the logs from the FortiAnalyzer directly and go to the FortiGate and export the logs from there, right after selecting to get the logs from disk/memory (upper right of the screen there is a selector for this).
Best regards,
Markus
Created on 11-02-2022 02:59 AM Edited on 11-04-2022 01:25 AM
Thank you @Markus_M for your reply,
I have the same Idea but I want a confirmation from experts :) , and look if they are a better way (I have a file with over 400000 lines from the fortigate).
Thank you for confirming my idea.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1710 | |
1093 | |
752 | |
447 | |
231 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.