Fortinet white logo
Fortinet white logo

Cookbook

FortiView from FortiAnalyzer

FortiView from FortiAnalyzer

Attaching a FortiAnalyzer to the FortiGate increases the functionality of FortiView. For example, it adds the Compromised Hosts view.

The following devices are required:

To enable FortiView from FortiAnalyzer:
  1. On the FortiGate, go to Security Fabric > Settings.
  2. Turn on FortiAnalyzer Logging and enter the IP address of the FortiAnalyzer device.
  3. Click Test Connectivity. A message will be shown stating that the FortiGate is not authorized on the FortiAnalyzer.

  4. On the FortiAnalyzer, go to Device Manager.
  5. In the device list, right click the just added FortiGate, then click Authorize.

  6. On the FortiGate, go to Security Fabric > Settings and click Test Connectivity to confirm that the device is now authorized.

  7. Go to FortiView > Sources.
  8. Select a time range other than now from the drop-down list to view historical data.
  9. From the source drop-down list, select FortiAnalyzer.

    All the historical information now comes from the FortiAnalyzer.

FortiView from FortiAnalyzer

FortiView from FortiAnalyzer

Attaching a FortiAnalyzer to the FortiGate increases the functionality of FortiView. For example, it adds the Compromised Hosts view.

The following devices are required:

To enable FortiView from FortiAnalyzer:
  1. On the FortiGate, go to Security Fabric > Settings.
  2. Turn on FortiAnalyzer Logging and enter the IP address of the FortiAnalyzer device.
  3. Click Test Connectivity. A message will be shown stating that the FortiGate is not authorized on the FortiAnalyzer.

  4. On the FortiAnalyzer, go to Device Manager.
  5. In the device list, right click the just added FortiGate, then click Authorize.

  6. On the FortiGate, go to Security Fabric > Settings and click Test Connectivity to confirm that the device is now authorized.

  7. Go to FortiView > Sources.
  8. Select a time range other than now from the drop-down list to view historical data.
  9. From the source drop-down list, select FortiAnalyzer.

    All the historical information now comes from the FortiAnalyzer.