Fortinet black logo

Cookbook

Viewing logs and reports for managed FortiAnalyzer units

6.2.0
Copy Link
Copy Doc ID 2d0f1673-0a61-11ea-8977-00505692583a:291501
Download PDF

Viewing logs and reports for managed FortiAnalyzer units

After you add FortiAnalyzer to the ADOM in FortiManager, the following FortiAnalyzer panes are available in FortiManager:

  • FortiView
  • NOC-SOC
  • Log View
  • Event Manager
  • Reports

All FortiAnalyzer functionality is available, except for the following:

  • Importing and exporting a report template
  • Importing and exporting a chart
  • Importing and downloading a log file

In FortiManager, when you create a report and run it, and the same report is generated in the managed FortiAnalyzer.

To view logs and reports:
  1. On FortiManager, go to Log View.

    You can view all logs received and stored on FortiAnalyzer.

  2. Click the Policy ID.

    The policy rule opens.

    If the policy rule doesn't open, ensure that you have imported the policy rules to the ADOM.

  3. Go to Policy & Objects > Policy Packages, and right-click the policy UUID to search the related policy logs.

Viewing logs and reports for managed FortiAnalyzer units

After you add FortiAnalyzer to the ADOM in FortiManager, the following FortiAnalyzer panes are available in FortiManager:

  • FortiView
  • NOC-SOC
  • Log View
  • Event Manager
  • Reports

All FortiAnalyzer functionality is available, except for the following:

  • Importing and exporting a report template
  • Importing and exporting a chart
  • Importing and downloading a log file

In FortiManager, when you create a report and run it, and the same report is generated in the managed FortiAnalyzer.

To view logs and reports:
  1. On FortiManager, go to Log View.

    You can view all logs received and stored on FortiAnalyzer.

  2. Click the Policy ID.

    The policy rule opens.

    If the policy rule doesn't open, ensure that you have imported the policy rules to the ADOM.

  3. Go to Policy & Objects > Policy Packages, and right-click the policy UUID to search the related policy logs.