Configuring Fortinet Syslogs

This section contains the following topics:

Syslog traffic must be configured to arrive to the TOS Aurora cluster that monitors the device - see Sending Additional Information via Syslog.

Fortinet-Specific Syslog Notes

  • Syslog traffic (allowed traffic, denied traffic) must be sent to SecureTrack either directly from the FortiGate devices or from the FortiAnalyzer devices that receive the FortiGate logs.