No Traffic logs visible and No matching log data in FortiAnalyzer 1000B
This is Naveen and I just joined this forum. I see It is very good forum with all useful discussions.
I have a problem with Log and Reports. We are using
Fortigate 200A with version 4.0 (MR2 Patch 2) and
Fortianalyzer 1000B with version 4.0 (MR2 patch 2).
In FortiGate, I have configured "Remote Logging & Archiving" with FAZ Ip address with minimum "debug" level.
I am able to see all event logs in FAZ, but unable to see Trffic logs. I think, because of this issue, FAZ is unable to show the reports and it says "No matching log data for this report". I have configured Layout, Data Filter and Schedule in FAZ.
It will be appreciable, if someone can help me to address this issue.
I dont see any option like Lookup for Reports / Resolve hosts, under System--Network--DNS. There is only Primary DNS and Second DNS server IP address, which we have configured with external DNS Server IP's.
But, I have enabled "Resolve Host" and "Resolve service" on all charts under Report Layout. Then, I am able see services resolved in Reports (http, https etc). Still internal and external IP address are not resolved.
One more new question: In the reports, I see the traffic volume is visible in MB (Mega Bytes). We have 15Mbps Internet bandwidth from ISP. So, I want to get the reports to compare the Bandwidth usage (in bps), instead traffic volume (in MB).
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.