I want to create an email alert and a daily report in fortianalyzer that will allow me to alert if a group of 20 ips from different subnets access a host. In the traffic log do I have to put 20 times the src_ip or is there any way to create a group of ips to monitor and add more whenever needed?
Hello joamdias,
Thank you for using the Community Forum.
I will seek to get you an answer or help. We will reply to this thread with an update as soon as possible.
Regards,
Hello`joamdias,
Here is the answer from one of our FAZ expert:
FAZ does not have a feature for customers to group the IPs for the report filter/email alert
You will need to input the x number of IPs in the report/email alert.
I hope it will help you. If not, do not hesitate to come back to this post and we will continue to find a solution.
Regards,
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1864 | |
1137 | |
769 | |
447 | |
265 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.