Hi All,
Is it possible to show MAC address in Forticloud logs.
Most of our clients run DHCP, so source IP is not really useful in most cases when tracking down devices as logs can be from many days ago.
Please see attached as an example.
Thanks.
Hello Spike,
It seems you're checking this log from the Application Control log view, in which the mac address would not appear. Did you try to check it from the Forward traffic logs?
If you still don't see the MAC address from the Forward traffic logs, kindly double-check if the device detection has been enabled under the source interface. https://community.fortinet.com/t5/FortiAnalyzer/Technical-Tip-How-to-display-the-source-MAC-addresse...
Best regards,
Stephen
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1739 | |
1108 | |
752 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.