For fortinet logs forwarding to splunk we have to mention the forwarding port as well, To mention the port, an option is not available in GUI. We can use the following commands to add the splunk server IP with a custom forwarding port# config log syslogd2 setting set status enable set server 10.10.10.10 set port 2222 end use above example to forward traffic to port 2222 Regards,
... View more
@elidemberg - Yes this is accurate please search data on the Cloud instance only. I can provide some alternatives but it's not recommended practices so I don't like to guide you to the wrong practices.
... View more