Analysis

Analysis

In the Analysis menu, you can view, search and browse through log files of each registered device. You can also view and generate reports. The Analysis menu also includes the e-Discovery tab, which allows you to search for email messages.

The FortiGuard Analysis server can store all log files, such as content logs and traffic logs. This server is a device that stores log files, similar to a FortiAnalyzer unit or Syslog server.

Reports are automatically provided for each device and can be generated from the Report tab. Generated reports are provided as PDF files. Reports display the gathered log data in bar and pie graphs within the PDF file.

Reports help you to:

view network usage and patterns to make informed decisions

discover and address vulnerabilities across dispersed device installations

minimize the effort required to identify attack patterns when customizing policies to prevent attacks

monitor Internet surfing patterns for compliance with your company policy

identify your web site visitors for potential customers.

The e-Discovery tab allows you to configure a detailed search for specific email messages. The e-Discovery tab also provides access for third-party users, who have the e-Discovery role profile, to view specific email messages and to search for specific email messages

This section includes the following topics:

Log Viewer

Customizing the log view

Deleting log files from the FortiGate web-based manager

Reports

e-Discovery

Note: DST is now extended by four weeks in the United States and Canada and may affect your location. It is recommended to verify if your location observes this change, since it affects the scope of the report. Fortinet has released supporting firmware. For more information, see the Fortinet Knowledge Center article, New Daylight Saving Time support.

In previous firmware releases of the service, the feature IP alias was available. In

FortiGuard Analysis and Management Service 1.2.0, the IP alias is no longer available.

FortiGuard Analysis and Management Service Version 1.2.0 Administration Guide

 

13-12000-406-20081031

59

Page 57
Image 57
Fortinet 1.2.0 manual Analysis

1.2.0 specifications

Fortinet has consistently been at the forefront of cybersecurity solutions, and with the release of Fortinet 1.2.0, they have further solidified their commitment to providing robust and effective security solutions. This updated version integrates several advanced features and technologies designed to address the evolving threat landscape faced by organizations today.

One of the main highlights of Fortinet 1.2.0 is its enhanced security capabilities. The new version incorporates advanced threat intelligence powered by FortiGuard Labs, which allows for real-time detection of emerging threats. This integration ensures that organizations can proactively respond to potential security breaches, minimizing the impact on their operations.

Another key characteristic of Fortinet 1.2.0 is its improved performance metrics. With optimized processing algorithms and updated hardware support, the solution can handle increased traffic loads without compromising performance. This is particularly vital as businesses expand their digital footprint and require solutions that can scale effectively without lag.

Fortinet 1.2.0 also emphasizes automation and orchestration in cybersecurity processes. With its new Threat Response and Mitigation (TRM) feature, organizations can automate threat detection and response. This streamlines incident response workflows, allowing security teams to focus on more strategic initiatives rather than manual and time-consuming tasks.

Additionally, this version introduces enhanced integration capabilities with popular DevOps tools, facilitating seamless collaboration between security and development teams. This alignment is crucial in today’s fast-paced digital environment, where the speed of development needs to be balanced with security protocols.

Furthermore, Fortinet 1.2.0 offers improved user experience with a more intuitive interface and customizable dashboards. This allows security professionals to quickly access critical information and make informed decisions based on real-time data.

In summary, Fortinet 1.2.0 embodies a comprehensive approach to cybersecurity, combining advanced threat intelligence, enhanced performance, automation, integration with DevOps tools, and a user-friendly interface. As organizations continue to navigate dynamic digital challenges, Fortinet provides the necessary tools to safeguard their assets and ensure business continuity. With its robust feature set and innovative technologies, Fortinet 1.2.0 stands out as a pivotal solution in the cybersecurity landscape.