Centralized log management
Set thresholds and create trigger-based alerting logic to automatically surface.
Quick Start Guide
Deploy Logmanager in your virtual environment
Connecting FortiGate to Logmanager is useful because it centralizes traffic events, security logs, and operational activity from the firewall in one searchable platform. Once the source is configured correctly, Logmanager can parse incoming FortiGate data automatically and expose it through built-in dashboards.
Prefer watching?
Check the related video walkthrough:
In Logmanager, open the relevant source configuration area and review the FortiGate instructions. Then go to Processing Tools → IP Prefix List, find the predefined FortiGate template, and add the IP address of the FortiGate device.
Open your Logmanager instance page and copy the IP address that the firewall should use as its logging destination.
In the FortiGate web interface, open Log & Report → Log Settings. Enable the appropriate logging method, paste the Logmanager IP address, and apply the settings.
Once the integration is active, open the predefined FortiGate dashboards or your default dashboard and filter by FortiGate. You should see incoming events and be able to inspect both processed and raw logs.
How to Configure Logmanager Backups on an SMB Server
Backups are one of the most important parts of any Logmanager deployment. They help protect configuration,
How to Create a FortiGate Configuration Change Alert in Logmanager
Alerting on firewall configuration changes is useful because these events often matter for both operations and
How to Integrate Logmanager with Flowmon
Flowmon is a network monitoring and security solution that provides deep visibility into network traffic using
How to Investigate a Suspicious Office 365 Login
Suspicious cloud logins rarely exist in isolation. This workflow is useful because it shows how to