integration-docs
Loading

Fortinet FortiGate Integration

Stack 9.0.0 Serverless Observability Serverless Security

Version 1.34.0 (View all)
Subscription level
What's this?
Basic
Level of support
What's this?
Elastic
Ingestion method(s) File, Network Protocol

This integration is for Fortinet FortiGate logs sent in the syslog format.

This integration has been tested against FortiOS versions 6.x and 7.x up to 7.4.1. Newer versions are expected to work but have not been tested.

  • When using the TCP input, be careful with the configured TCP framing. According to the Fortigate reference, framing should be set to rfc6587 when the syslog mode is reliable.

The log dataset collects Fortinet FortiGate logs.

This integration includes one or more Kibana dashboards that visualizes the data collected by the integration. The screenshots below illustrate how the ingested data is displayed.