log-forward-service
Use the following commands to configure log aggregation service.
|
|
This command is only available on FortiAnalyzer models 1000E and above. It is also available on all supported FortiAnalyzer-VM. For a list of supported models in v7.6.6, see the FortiAnalyzer 7.6.6 Release Notes. |
Syntax
config system log-forward-service
set accept-aggregation {enable | disable}
set aggregation-disk-quota <integer>
set collector-auth {enable | disable}
end
|
Variable |
Description |
|---|---|
|
accept-aggregation {enable | disable} |
Enable/disable accept log aggregation option (default = disable). |
|
aggregation-disk-quota <integer> |
Aggregated device disk quota on the server, in megabytes (default = 2000). |
|
collector-auth {enable | disable} |
Enable/disable FortiAnalyzer Collectors to be authenticated before forwarding data (default = disable). When enabled, the Collector must be authorized by an admin in the FortiAnalyzer that is operating in Analyzer mode. The device can be authorized in the FortiAnalyzer GUI Device Manager. |