Fortinet black logo

Administration Guide

Requesting FortiClient diagnostic logs from endpoints

Requesting FortiClient diagnostic logs from endpoints

Note

This feature only works with Windows endpoints that fulfill the following criteria:

  • Running FortiClient
  • Online
  • Managed by FortiSASE Endpoint Management Service

FortiSASE supports requesting the export of FortiClient diagnostic logs on-demand from a single online Windows endpoint from one of the following:

  • Details tab in View Endpoint Details
  • More options in the Endpoints tab in Managed Endpoints

Once the endpoint receives the log request, log collection will take place in the background. This process takes approximately 20 minutes. When new logs are generated, then the old ones will be overwritten.

To request FortiClient diagnostic logs from an endpoint:
  1. Go to Network > Managed Endpoints.
  2. Select a Windows endpoint that is online and perform one of these steps:
    • Click View Endpoint Details and in the Details tab, next to the Diagnostic Logs field, click Request new logs.
    • Click More Options > Export Diagnostic Logs and in the Export diagnostic logs prompt, click Request new logs.
  3. In the top right, observe the notification Successfully requested diagnostic logs from the endpoint displays, indicating that FortiSASE sent the request successfully.
To download previously requested FortiClient diagnostic logs from an endpoint:
  1. Go to Network > Managed Endpoints.
  2. Select a Windows endpoint that you previously sent a log request to and perform one of these steps:
    • Click View Endpoint Details and in the Details tab, next to the Diagnostic Logs field, click Download to download the available diagnostic logs for the endpoint.
    • Click More Options > Export Diagnostic Logs and in the Export diagnostic logs prompt, click Download to download the available diagnostic logs for the endpoint.

Requesting FortiClient diagnostic logs from endpoints

Note

This feature only works with Windows endpoints that fulfill the following criteria:

  • Running FortiClient
  • Online
  • Managed by FortiSASE Endpoint Management Service

FortiSASE supports requesting the export of FortiClient diagnostic logs on-demand from a single online Windows endpoint from one of the following:

  • Details tab in View Endpoint Details
  • More options in the Endpoints tab in Managed Endpoints

Once the endpoint receives the log request, log collection will take place in the background. This process takes approximately 20 minutes. When new logs are generated, then the old ones will be overwritten.

To request FortiClient diagnostic logs from an endpoint:
  1. Go to Network > Managed Endpoints.
  2. Select a Windows endpoint that is online and perform one of these steps:
    • Click View Endpoint Details and in the Details tab, next to the Diagnostic Logs field, click Request new logs.
    • Click More Options > Export Diagnostic Logs and in the Export diagnostic logs prompt, click Request new logs.
  3. In the top right, observe the notification Successfully requested diagnostic logs from the endpoint displays, indicating that FortiSASE sent the request successfully.
To download previously requested FortiClient diagnostic logs from an endpoint:
  1. Go to Network > Managed Endpoints.
  2. Select a Windows endpoint that you previously sent a log request to and perform one of these steps:
    • Click View Endpoint Details and in the Details tab, next to the Diagnostic Logs field, click Download to download the available diagnostic logs for the endpoint.
    • Click More Options > Export Diagnostic Logs and in the Export diagnostic logs prompt, click Download to download the available diagnostic logs for the endpoint.