Fortigate 30E logs to VMware ubuntu logstash server

46 Views Asked by At

I need a bit of help from those wiser.

I've built a virtual machine log server that runs on Ubuntu. The log server has an ELK stack installed through which logs from other virtual machines (normal Ubuntu and Windows Server) are already passing. The problem is that I can't get any logs from FortiGate into Logstash on the log server; the /var/log/logstash/logstash-plain.log file doesn't show any information about the FortiGate logs. I have set the virtual machine's IP address and the port 5144, which I use in the Logstash configuration file, from the firewall's management panel. I've also modified the virtual machine's NAT port forwarding settings. I wonder where the problem might be and where I could ask for help.

portforwarding

0

There are 0 best solutions below