I think I will deploy with the Collector Agent as you suggest, I like the additional features.
But I am wondering, in case it comes up in the future. Do you know if Fortigate can support local polling from the FortiGate from multiple DC's. "Technically" it looks like is should and the unit does not display any errors when I set it up, it just does not record the secondary server logons and I do not get any debug errors. In fact I see the FG logon in the security event viewer of the second DC. The events just do not get merged with the primary.
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.