Description This article describes CloudTrail Integration checks,
including validation of SQS, S3, and IAM permissions to ensure that
FortiSIEM can successfully pull CloudTrail logs from AWS. Scope
FortiSIEM. Solution Check the credentials part in th...
Description This article describes per-device disk usage in ClickHouse.
While ClickHouse does not track disk usage per device natively,
administrators can use clickhouse queries to get these type of details.
Scope FortiSIEM. Solution This can achieve...
Description This article describes step-by-step instructions on how to
configure the AWS CloudWatch Agent on an EC2 instance to send logs to
CloudWatch, which FortiSIEM can then pull via the AWS CloudWatch method.
Scope FortiSIEM. Solution Pre-requis...
Description This article describes why multiple access methods (for
example, Windows Agent and Syslog) may appear in the CMDB report for a
Windows device, even though it has only been configured and integrated
using the Windows Agent. Scope FortiSIEM...
Description This article describes how to write a regex filter in the
Event Dropping rule. Scope FortiSIEM. Solution To achieve the desired
event dropping for specific queries based on the raw logs, it is
necessary to configure as below: Event Type: ...