12.03.2015 Views

FortiGate Administration Guide - FirewallShop.com

FortiGate Administration Guide - FirewallShop.com

FortiGate Administration Guide - FirewallShop.com

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Log&Report<br />

Storing Logs<br />

Figure 326:Configuring a connection to the FortiAnalyzer unit<br />

To configure the <strong>FortiGate</strong> unit to send logs to the FortiAnalyzer unit<br />

1 Go to Log&Report > Log Config > Log Setting.<br />

2 Select FortiAnalyzer.<br />

3 Select the blue arrow to expand the FortiAnalyzer options.<br />

4 Set the level of the log messages to send to the FortiAnalyzer unit.<br />

5 Enter the Server IP address of the FortiAnalyzer unit.<br />

6 Select Apply.<br />

The FortiAnalyzer unit needs to be configured to receive logs from the <strong>FortiGate</strong><br />

unit after configuring log settings on the <strong>FortiGate</strong> unit. Contact a FortiAnalyzer<br />

administrator to <strong>com</strong>plete the configuration.<br />

Note: The <strong>FortiGate</strong> unit can log up to three FortiAnalyzer units. The <strong>FortiGate</strong> unit sends<br />

logs to all three FortiAnalyzer units where the logs are stored on each of the FortiAnalyzer<br />

units. This provides real-time backup protection in the event one of the FortiAnalyzer units<br />

fails. This feature is only available through the CLI. See the <strong>FortiGate</strong> CLI Reference for<br />

more information.<br />

Connecting to FortiAnalyzer using Automatic Discovery<br />

You can connect to a FortiAnalyzer unit by using the Automatic Discovery feature.<br />

Automatic discovery is a method of establishing a connection to a FortiAnalyzer<br />

unit.<br />

When you select Automatic Discovery, the <strong>FortiGate</strong> unit uses HELLO packets to<br />

locate any FortiAnalyzer units available on the network within the same subnet.<br />

When the <strong>FortiGate</strong> unit discovers the FortiAnalyzer unit, the <strong>FortiGate</strong> unit<br />

automatically enables logging to the FortiAnalyzer unit and begins sending log<br />

data, if logging is configured for traffic and so on, to the FortiAnalyzer unit.<br />

The Automatic Discovery feature is disabled by default on the FortiAnalyzer unit<br />

and must be enabled on the FortiAnalyzer unit. The FortiAnalyzer unit requires 3.0<br />

firmware to use this feature. It is re<strong>com</strong>mended to contact a FortiAnalyzer<br />

administrator to verify that the Automatic Discovery feature is enabled on the<br />

FortiAnalyzer unit before using this feature.<br />

To enable automatic discovery<br />

1 Go to Log&Report > Log Config > Log Setting.<br />

2 Select the blue arrow for FortiAnalyzer to expand the options.<br />

3 Select Automatic Discovery.<br />

<strong>FortiGate</strong> Version 3.0 MR5 <strong>Administration</strong> <strong>Guide</strong><br />

01-30005-0203-20070830 473

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!