Hello guys,
We have one default rule and when I run it, I can see the audit logs run, but it does not fall as an incident. What could be the reason for this?
Hi @adem_netsys ,
It should generate an incident based on your Action.. Can you check if you have the correct time range filter in the incident dashboard?
Abdel
Hi,
Yes, i have correct time range but i couldnt understand why. I have not found this error in a different version.
Hi @adem_netsys ,
Do you have at least some incidents generated by default rules? What is FSM version?
In 7.0.2 environment we get this problem. In the latest version the same rule successfully generates the incident.
User | Count |
---|---|
2140 | |
1188 | |
770 | |
451 | |
347 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.