Nozomi
What is Discovered and Monitored
Protocol | Information discovered | Metrics collected | Used for |
---|---|---|---|
Syslog | Device type | Node detection, protocol information, network changes | Security and Compliance |
Event Types
In ADMIN > Device Support > Event, search for "Nozomi" in the Name and Description columns to see the event types associated with this device.
Rules
There are no specific rules for Nozomi, however rules that match the Event Type Groups associated with Nozomi Events may trigger.
Reports
There are no specific Reports for Nozomi, however reports that match the Event Type Groups associated with Nozomi Events may return results.
Configuring Syslog on Nozomi
- Log in to the Guardian console.
- Navigate to Administration->Data Integration.
- Press +Add on the right side of the screen.
- Select the Common Event Format (CEF) from the drop down.
- You should see the data entry screen.
- Enter the appropriate host information. For example
udp://<FortiSIEM IP>:514
. - Select Enable sending Alerts and/or Enable sending Audit Logs and/or Enable sending Health Logs.
- Press New Endpoint.