Fortinet black logo

Cookbook

Configuring remote logging

Copy Link
Copy Doc ID c8d3a4a2-3e1b-11ea-9384-00505692583a:811958
Download PDF

Configuring remote logging

  1. Go to Log & Report > Log Settings > Remote and click New.
  2. Click Enable and enter a Profile name.
  3. Set Address to the IP address of the FortiAnalyzer.
  4. Set Port to 514, the commonly used port for syslog events that FortiAnalyzer uses to listen for incoming syslog event notifications.
  5. Select a security Level that a log message must meet or exceed in order to be recorded and stored.
  6. Select the Facility identifier that the FortiMail unit uses to identify itself.
  7. Set the Log protocol to Syslog or OFTPS (FortiAnalyzer units support both protocols).
  8. In this example, disable CSV format, as FortiAnalyzer units do not support CSV-formatted log messages.
  9. Enable Matched session only if you want to send only the matched session logs to the remote server, otherwise all logs will be sent regardless.
  10. Under Logging Policy Configuration, enable the types of logs you want to record to the FortiAnalyzer unit.
  11. Click Create.

Configuring remote logging

  1. Go to Log & Report > Log Settings > Remote and click New.
  2. Click Enable and enter a Profile name.
  3. Set Address to the IP address of the FortiAnalyzer.
  4. Set Port to 514, the commonly used port for syslog events that FortiAnalyzer uses to listen for incoming syslog event notifications.
  5. Select a security Level that a log message must meet or exceed in order to be recorded and stored.
  6. Select the Facility identifier that the FortiMail unit uses to identify itself.
  7. Set the Log protocol to Syslog or OFTPS (FortiAnalyzer units support both protocols).
  8. In this example, disable CSV format, as FortiAnalyzer units do not support CSV-formatted log messages.
  9. Enable Matched session only if you want to send only the matched session logs to the remote server, otherwise all logs will be sent regardless.
  10. Under Logging Policy Configuration, enable the types of logs you want to record to the FortiAnalyzer unit.
  11. Click Create.