The community is a place to collaborate, share insights and experiences, and get answers to questions.<\/p>\r\n

Search here or look around to get started.<\/p>", "imageupload.max_uploaded_images_per_upload" : 100, "imageupload.max_uploaded_images_per_user" : 1000, "integratedprofile.connect_mode" : "", "tkb.toc_maximum_heading_level" : "", "tkb.toc_heading_list_style" : "disc", "sharedprofile.show_hovercard_score" : true, "config.search_before_post_scope" : "community", "tkb.toc_heading_indent" : "", "p13n.cta.recommendations_feed_dismissal_timestamp" : -1, "imageupload.max_file_size" : 7200, "layout.show_batch_checkboxes" : false, "integratedprofile.cta_connect_slim_dismissal_timestamp" : -1 }, "isAnonymous" : true, "policies" : { "image-upload.process-and-remove-exif-metadata" : false }, "registered" : false, "emailRef" : "", "id" : -1, "login" : "Anonymous" }, "Server" : { "communityPrefix" : "/tpykb84852", "nodeChangeTimeStamp" : 1732295181917, "tapestryPrefix" : "/t5", "deviceMode" : "DESKTOP", "responsiveDeviceMode" : "DESKTOP", "membershipChangeTimeStamp" : "0", "version" : "24.8", "branch" : "24.8-release", "showTextKeys" : false }, "Config" : { "phase" : "prod", "integratedprofile.cta.reprompt.delay" : 30, "profileplus.tracking" : { "profileplus.tracking.enable" : false, "profileplus.tracking.click.enable" : false, "profileplus.tracking.impression.enable" : false }, "app.revision" : "2410251442-s96644fcabc-b95", "navigation.manager.community.structure.limit" : "1000" }, "Activity" : { "Results" : [ ] }, "NodeContainer" : { "viewHref" : "https://community.fortinet.com/t5/FortiSIEM/gh-p/fortisiem", "description" : "FortiSIEM provides Security Information and Event Management (SIEM) and User and Entity Behavior Analytics (UEBA)", "id" : "fortisiem", "shortTitle" : "FortiSIEM", "title" : "FortiSIEM", "nodeType" : "grouphub" }, "Page" : { "skins" : [ "fortinet", "theme_hermes", "responsive_peak" ], "authUrls" : { "loginUrl" : "/tpykb84852/auth/saml/doauth/post?referer=https%3A%2F%2Fcommunity.fortinet.com%2Ft5%2FFortiSIEM-Blog%2Fbg-p%2Ffortisiemblog-board", "loginUrlNotRegistered" : "/tpykb84852/auth/saml/doauth/post?redirectreason=notregistered&referer=https%3A%2F%2Fcommunity.fortinet.com%2Ft5%2FFortiSIEM-Blog%2Fbg-p%2Ffortisiemblog-board", "loginUrlNotRegisteredDestTpl" : "/tpykb84852/auth/saml/doauth/post?redirectreason=notregistered&referer=%7B%7BdestUrl%7D%7D" }, "name" : "BlogPage", "rtl" : false, "object" : { "viewHref" : "/t5/FortiSIEM-Blog/bg-p/fortisiemblog-board", "id" : "fortisiemblog-board", "page" : "BlogPage", "type" : "Board" } }, "WebTracking" : { "Activities" : { }, "path" : "Community:Fortinet Community/Category:Community Groups/Category:FortiSIEM/Blog:Blog" }, "Feedback" : { "targeted" : { } }, "Seo" : { "markerEscaping" : { "pathElement" : { "prefix" : "@", "match" : "^[0-9][0-9]$" }, "enabled" : false } }, "TopLevelNode" : { "viewHref" : "https://community.fortinet.com/", "description" : "

The community is a place to collaborate, share insights and experiences, and get answers to questions.<\/p>", "id" : "tpykb84852", "shortTitle" : "Fortinet Community", "title" : "Fortinet Community", "nodeType" : "Community" }, "Community" : { "viewHref" : "https://community.fortinet.com/", "integratedprofile.lang_code" : "en", "integratedprofile.country_code" : "US", "id" : "tpykb84852", "shortTitle" : "Fortinet Community", "title" : "Fortinet Community" }, "CoreNode" : { "conversationStyle" : "blog", "viewHref" : "https://community.fortinet.com/t5/FortiSIEM-Blog/bg-p/fortisiemblog-board", "settings" : { }, "description" : "", "id" : "fortisiemblog-board", "shortTitle" : "Blog", "title" : "FortiSIEM Blog", "nodeType" : "Board", "ancestors" : [ { "viewHref" : "https://community.fortinet.com/t5/FortiSIEM/gh-p/fortisiem", "description" : "FortiSIEM provides Security Information and Event Management (SIEM) and User and Entity Behavior Analytics (UEBA)", "id" : "fortisiem", "shortTitle" : "FortiSIEM", "title" : "FortiSIEM", "nodeType" : "grouphub" }, { "viewHref" : "https://community.fortinet.com/t5/Community-Groups/ct-p/groups", "description" : "", "id" : "groups", "shortTitle" : "Community Groups", "title" : "Community Groups", "nodeType" : "category" }, { "viewHref" : "https://community.fortinet.com/", "description" : "

The community is a place to collaborate, share insights and experiences, and get answers to questions.<\/p>", "id" : "tpykb84852", "shortTitle" : "Fortinet Community", "title" : "Fortinet Community", "nodeType" : "Community" } ] } }; LITHIUM.Components.RENDER_URL = "/t5/util/componentrenderpage/component-id/#{component-id}?render_behavior=raw"; LITHIUM.Components.ORIGINAL_PAGE_NAME = 'blogs/BlogPage'; LITHIUM.Components.ORIGINAL_PAGE_ID = 'BlogPage'; LITHIUM.Components.ORIGINAL_PAGE_CONTEXT = 'ASK0ppkB_7FCMEuDh9cTBojOC7Ij1aLlqJ_Q3oU63S9U1kNlBvu9_07AIKWasTKK02KrtHPfBZuuxeL9CeGfZ4pgaAg_F0u8W8HOmDnDP2HxpN-KNgQvlpRlFRajAVkHelB_MZ7ewSfKhzNSmGjSCyL916bhrTaTmiI2CStKUoP0DK-l4FfqzsxHRl4r9l2zq7TAZAaHKA71kYpt2CHKa56aa6znubMR_3xuuPebUc3swNxBq_SqLf2hqqxF6Qq2Ahf3lM6N2N8Uv61zr0PdJ3Va9num6KTqMaKxaX-SnR8fyJg5Q_zog2ZAVkielt71M_grFTpaXHODL6XoWagFJQ..'; LITHIUM.Css = { "BASE_DEFERRED_IMAGE" : "lia-deferred-image", "BASE_BUTTON" : "lia-button", "BASE_SPOILER_CONTAINER" : "lia-spoiler-container", "BASE_TABS_INACTIVE" : "lia-tabs-inactive", "BASE_TABS_ACTIVE" : "lia-tabs-active", "BASE_AJAX_REMOVE_HIGHLIGHT" : "lia-ajax-remove-highlight", "BASE_FEEDBACK_SCROLL_TO" : "lia-feedback-scroll-to", "BASE_FORM_FIELD_VALIDATING" : "lia-form-field-validating", "BASE_FORM_ERROR_TEXT" : "lia-form-error-text", "BASE_FEEDBACK_INLINE_ALERT" : "lia-panel-feedback-inline-alert", "BASE_BUTTON_OVERLAY" : "lia-button-overlay", "BASE_TABS_STANDARD" : "lia-tabs-standard", "BASE_AJAX_INDETERMINATE_LOADER_BAR" : "lia-ajax-indeterminate-loader-bar", "BASE_AJAX_SUCCESS_HIGHLIGHT" : "lia-ajax-success-highlight", "BASE_CONTENT" : "lia-content", "BASE_JS_HIDDEN" : "lia-js-hidden", "BASE_AJAX_LOADER_CONTENT_OVERLAY" : "lia-ajax-loader-content-overlay", "BASE_FORM_FIELD_SUCCESS" : "lia-form-field-success", "BASE_FORM_WARNING_TEXT" : "lia-form-warning-text", "BASE_FORM_FIELDSET_CONTENT_WRAPPER" : "lia-form-fieldset-content-wrapper", "BASE_AJAX_LOADER_OVERLAY_TYPE" : "lia-ajax-overlay-loader", "BASE_FORM_FIELD_ERROR" : "lia-form-field-error", "BASE_SPOILER_CONTENT" : "lia-spoiler-content", "BASE_FORM_SUBMITTING" : "lia-form-submitting", "BASE_EFFECT_HIGHLIGHT_START" : "lia-effect-highlight-start", "BASE_FORM_FIELD_ERROR_NO_FOCUS" : "lia-form-field-error-no-focus", "BASE_EFFECT_HIGHLIGHT_END" : "lia-effect-highlight-end", "BASE_SPOILER_LINK" : "lia-spoiler-link", "FACEBOOK_LOGOUT" : "lia-component-users-action-logout", "BASE_DISABLED" : "lia-link-disabled", "FACEBOOK_SWITCH_USER" : "lia-component-admin-action-switch-user", "BASE_FORM_FIELD_WARNING" : "lia-form-field-warning", "BASE_AJAX_LOADER_FEEDBACK" : "lia-ajax-loader-feedback", "BASE_AJAX_LOADER_OVERLAY" : "lia-ajax-loader-overlay", "BASE_LAZY_LOAD" : "lia-lazy-load" }; LITHIUM.noConflict = true; LITHIUM.useCheckOnline = false; LITHIUM.RenderedScripts = [ "LiModernizr.js", "jquery.tmpl-1.1.1.js", "Auth.js", "jquery.scrollTo.js", "json2.js", "jquery.ajax-cache-response-1.0.js", "Events.js", "jquery.delayToggle-1.0.js", "Forms.js", "jquery.css-data-1.0.js", "Text.js", "NoConflict.js", "DataHandler.js", "DropDownMenuVisibilityHandler.js", "jquery.effects.slide.js", "Lithium.js", "ElementQueries.js", "jquery.iframe-shim-1.0.js", "Dialog.js", "jquery.json-2.6.0.js", "Sandbox.js", "jquery.ui.dialog.js", "ForceLithiumJQuery.js", "jquery.ui.draggable.js", "Components.js", "InformationBox.js", "ElementMethods.js", "jquery.appear-1.1.1.js", "jquery.js", "jquery.ui.mouse.js", "jquery.ui.widget.js", "Namespace.js", "Cache.js", "PartialRenderProxy.js", "jquery.function-utils-1.0.js", "jquery.iframe-transport.js", "prism.js", "jquery.ui.resizable.js", "PolyfillsAll.js", "Globals.js", "jquery.ui.core.js", "jquery.effects.core.js", "AjaxSupport.js", "jquery.blockui.js", "jquery.position-toggle-1.0.js", "ActiveCast3.js", "DropDownMenu.js", "Loader.js", "Throttle.js", "jquery.ui.position.js", "jquery.viewport-1.0.js", "ResizeSensor.js", "jquery.clone-position-1.0.js", "Video.js", "jquery.lithium-selector-extensions.js", "SpoilerToggle.js", "jquery.fileupload.js", "DeferredImages.js", "jquery.hoverIntent-r6.js" ];(function(){LITHIUM.AngularSupport=function(){function g(a,c){a=a||{};for(var b in c)"[object object]"===Object.prototype.toString.call(c[b])?a[b]=g(a[b],c[b]):a[b]=c[b];return a}var d,f,b={coreModule:"li.community",coreModuleDeps:[],noConflict:!0,bootstrapElementSelector:".lia-page .min-width .lia-content",bootstrapApp:!0,debugEnabled:!1,useCsp:!0,useNg2:!1},k=function(){var a;return function(b){a||(a=document.createElement("a"));a.href=b;return a.href}}();LITHIUM.Angular={};return{preventGlobals:LITHIUM.Globals.preventGlobals, restoreGlobals:LITHIUM.Globals.restoreGlobals,init:function(){var a=[],c=document.querySelector(b.bootstrapElementSelector);a.push(b.coreModule);b.customerModules&&0

FortiSIEM Blog

Blog Articles

FortiSIEM 7.2.2 Release

This release of FortiSIEM brings two new features and several new enhancements. New Features: Raw Event Size-Based Licensing: This new licensing scheme focuses on the total raw event size per day, lic...

0 Comments

Monitoring Google Cloud Platform (GCP) with FortiSIEM

Overview Many organizations now operate some or all of their infrastructure in a cloud compute platform such as Google Cloud Platform (GCP). The proprietary nature of cloud compute platforms combined ...

0 Comments

FortiSIEM 7.1.0

FortiSIEM 7.1.0 – General Availability FortiSIEM has been updated to version 7.1.0, and with it comes a series of improvements aimed at simplifying security operations and IT management. Let’s dive in...

0 Comments

FortiSIEM 6.4 Lookup Tables

FortiSIEM 6.4.0 introduces the ability of enriching Analytics with information from Lookup Tables to provide insight into the data being retrieved from logs. It also introduces the ability to create C...

4 Comments

What makes your SIEM a Winner?

Let's talk about three important areas of SIEM deployments: functionality, scalability, and flexibility. Functionality What does a SIEM do? Wikipedia [1] suggests: Data aggregation; Correlation; Alert...

0 Comments

Exploring the new FortiSIEM JSON Incident API

Today we're looking at the new FortiSIEM JSON Incident API. Need to extract some incident data from your FortiSIEM? This API's for you!Let's explore one of the API functions by building a simple Bash ...

2 Comments

NetFlow Collection and Analysis with FortiSIEM

Did you know that FortiSIEM can ingest NetFlow traffic? Send NetFlow traffic to FortiSIEM and it will be ingested, parsed, written to our common database, and made available for analysis, dashboards, ...

0 Comments

Augmenting Security Operation Centers with FortiSOAR

One of the responsibilities of a SOC team is to ensure that all incidents are tracked and resolved in a timely manner as well as making sure security processes are consistent. To that end, a Security ...

0 Comments

FortiSIEM 6.2.0 Released!

FortiSIEM 6.2.0 Release HighlightsHere we take a look at some of the new features in FortiSIEM 6.2. This release further enhances our scalable, easy to use SIEM solution.We're focusing on the followin...

0 Comments

Endpoint Visibility with Fortinet UEBA Solutions

Many organizations have recently seen a shift to more remote and home working in response to world events. An expansion of the off-net workforce brings additional organizational security challenges. H...

1 Comments

Streamlining Security with FortiSOAR

Executive Summary: Challenge: Hiring skilled employees that can adequately protect the business from evolving threats Orchestrating point solutions together & having consistent security protections ac...

0 Comments

Visible Security

The cliché of "threats are evolving" is unavoidable. That is because it is true. With threats constantly changing and becoming increasingly complex, organizations need a strategic vendor that can help...

0 Comments
Announcements

Welcome to your new Fortinet Community!

You'll find your previous forum posts under "Forums"