This is the scenario
A VDOM named Mycompany is the main traffic VDOM
A VDOM named MGMTFGD is responsible for connecting to Fortiguard (It's marked as the management VDOM)
A VDOM named OOB is going to be used for Admins interaction and also sending logs to Fortianalyzer
The Global VDOM is also present
I want all the VDOMs (specially the MGMTFGD and Mycompany) logs to be sent to Fortianalyzer which is reachable via OOB VDOM
When configuring FAZ-Override settings in Mycompany VDOM, I just have two options:
1- Sending logs through the VDOM itself
2- Sending logs through the management VDOM which is MGMTFGD
In the command line, I cannot find any command to dictate the firewall sending logs neither through itself or the Management vdom (Here MGMTFGD) but using a third VDOM which is OOB
And for security reasons I'm not going to change (Switch management) the Fortiguard VDOM to OOB.
Hope its all clear
M. Ganji, Network & Security Expert.