We have recently released content update 406 (6.7.0, 6.7.1 and 6.7.2).
Content updates are available for the earlier release of FortiSIEM
supporting Content Updates.
https://help.fortinet.com/fsiem/6-7-0/Online-Help/HTML5_Help/content_updates.htm#Con...
We have recently released content update 404 (6.7.0, 6.7.1 and 6.7.2).
Content updates are available for the earlier release of FortiSIEM
supporting Content Update.
https://help.fortinet.com/fsiem/6-7-0/Online-Help/HTML5_Help/content_updates.htm#Cont...
This release provides a number of fixes and enhancements. I think it is
worth highlighting two of these new enhancements: 1) FortiSIEM
Collectors supporting data diodes. In earlier releases, the Collector
must register with the Super node and upload ...
We have recently released content update 403 (6.7.0). Content updates
are available for the earlier release of FortiSIEM supporting Content
Update.
https://help.fortinet.com/fsiem/6-7-0/Online-Help/HTML5_Help/content_updates.htm#Content
This content ...
With this event database setup eventDB as online and eventDB as archive,
once the online retention policy time had been bet, then the event is
moved to the archive at the end of the day.
Can you send to me directly an export in CSV format of the forecpoint
logs? A varied sample of logs will be best. I can see that Forcepoint
have changed their log format. Thanks
Hi, have a look at the attached parser. You will need to create a new
parser
https://help.fortinet.com/fsiem/7-0-1/Online-Help/HTML5_Help/Creating-a-Custom-Parser.html
If you can provide more sample events, we can improve this parser.
Thanks