When FortiWeb-VM is deployed on Azure, use this command to manually configure the FortiWeb appliance to send log messages to Azure Event Hubs.
Alternatively, you can create the configuration automatically using a PowerShell script. For details, see the FortiWeb-VM Azure Install Guide:
When the event hub configuration is complete, FortiWeb sends health logs to Azure Event Hub.
If you also create a corresponding Azure CEF SIEM policy (see log siem-policy), FortiWeb also sends security logs to Azure Event Hub.
This command is available for FortiWeb-VM running on Microsoft Azure only.
You can use the Azure classic portal to obtain the values that the
config system eventhub settings require. For detailed instructions, see the FortiWeb-VM Azure Install Guide:
To use this command, your administrator account’s access control profile must have either
rw permission to the
sysgrp area. For details, see Permissions.
config system eventhub
enable to activate the Azure event hub configuration.
|Enter the subscription (ID) that has the access to the Azure Event Hub
Enter the primary shared access key that the specified policy (by
Enter the name of the Shared Access policy created for the Azure Event Hub.
Enter the name of the Azure Event Hub that is associated with the specified service bus (by
Enter the Service Bus Namespace that the Event Hub is created at.