Getting Data In

Integrating logs from Fortinet devices with Splunk

d4wc3k
Path Finder

Hello Everyone on Splunk Forum.

I want to integrate logs from following Fortinet devices
1) Switch, model: FortiSwitch148E-POE
2) Access Points, models: FortiAP 221C and FortiAP 221E

I am aware that for Fortinet Firewall ( Fortigate ), i can install TA for that.
For Forti Switch I have found following manual:https://kb.fortinet.com/kb/documentLink.do?externalID=FD44999

But what should be done on Splunk side for getting Fortinet logs properly proccessed by Splunk, i could not find addons for that.

Thanks

BR
Dawid

Labels (2)
0 Karma
Get Updates on the Splunk Community!

New Year. New Skills. New Course Releases from Splunk Education

A new year often inspires reflection—and reinvention. Whether your goals include strengthening your security ...

Splunk and TLS: It doesn't have to be too hard

Overview Creating a TLS cert for Splunk usage is pretty much standard openssl.  To make life better, use an ...

Faster Insights with AI, Streamlined Cloud-Native Operations, and More New Lantern ...

Splunk Lantern is a Splunk customer success center that provides practical guidance from Splunk experts on key ...