Fortinet FortiAuthenticator
What is Discovered and Monitored
Protocol | Information Discovered | Data Collected | Used for |
---|---|---|---|
SNMP | Vendor, OS, Model, Network Interfaces | Interface Stat, Authentication Stat | Performance Monitoring |
Syslog | LOG Discovery | Over 150 event types | Security and Compliance |
Event Types
In RESOURCE > Event Types, Search for “Fortinet-FortiAuthenticator”.
Sample Event Type:
<14>Aug 14 22:32:52 db[16987]: category="Event" subcategory="Authentication" typeid=20995 level="information" user="admin" nas="" action="Logout" status="" Administrator 'admin' logged out
Configuration
Configure FortiAuthenticator to send syslog on port 514 to FortiSIEM.
FortiSIEM Access Credentials
For Device Type Fortinet FortiAuthenticator, see Access Credentials.