Fortinet FortiSIEM
  • 29 Sep 2024
  • 1 Minute to read
  • Dark
    Light
  • PDF

Fortinet FortiSIEM

  • Dark
    Light
  • PDF

Article summary

FortiSIEM is a platform that rapidly detects and responds to security threats using Machine Learning / UEBA.

Types of Assets Fetched

This adapter fetches the following types of assets:

  • Alerts/Incidents

Parameters

  1. Host Name or IP Address (required) - The hostname or IP address of the FortiSIEM server that Axonius can communicate with via the Required Ports.

  2. User Name and Password (required) - The credentials for a user account that has the Required Permissions to fetch assets.

  3. Verify SSL - Select whether to verify the SSL certificate of the server against the CA database inside of Axonius. For more details, see SSL Trust & CA Settings.

  4. HTTPS Proxy (optional) - Connect the adapter to a proxy instead of directly connecting it to the domain.

  5. HTTPS Proxy User Name (optional) - The user name to use when connecting to the value supplied in Host Name or IP Address via the value supplied in HTTPS Proxy.

  6. HTTPS Proxy Password (optional) - The password to use when connecting to the server using the HTTPS Proxy.

To learn more about common adapter connection parameters and buttons, see Adding a New Adapter Connection.

Fortinet FortiSIEM

Advanced Settings

Note:

Advanced settings can either apply for all connections for this adapter, or you can set different advanced settings and/or different scheduling for a specific connection, refer to ​Advanced Configuration for Adapters.

  • Fetch Incidents in the last X days (default: 15) - Specify the number of days back to fetch the incidents.
Note:

To learn more about Adapter Configuration tab advanced settings, see Adapter Advanced Settings.

Required Ports

Axonius must be able to communicate with the value supplied in Host Name or IP Address via the following ports:

  • TCP port 443

Required Permissions

The value supplied in User Name needs to have access to logs in order to fetch assets.

Version Matrix

This adapter was only tested with the versions marked as supported, but may work with other versions. Contact Axonius Support if you have a version that is not listed, which is not functioning as expected.

VersionSupportedNotes
v7.0.1Yes--

Supported From Version

Supported from Axonius version 6.1.32.1



Was this article helpful?

What's Next