The ITSI Content Pack for Fortinet FortiGate contains service definitions and KPIs ready to import to ITSI. The KPI Thresholds and importance values are set to defaults so that they can be tuned manually for your use case. After configuration, this content pack provides a comprehensive monitoring solution for Fortinet FortiGate systems.
Fortinet FortiGate Log Reference
Kinney Group ITSI Content Pack Blog
For more information about Kinney Group's Splunk Products, visit our website.
Services
Fortinet FortiGate monitoring encompasses several specialized services, each targeting specific aspects of system performance and security:
- Fortinet FortiGate System Health
- Description: Monitors overall health and performance of the Fortinet FortiGate system, encompassing all aspects including traffic, security, and event logs.
- Traffic
- Description: Monitors network traffic passing through the Fortinet FortiGate, capturing all data packets and their statuses.
- Forward Traffic
- Description: Monitors forward network traffic and anomalies, focusing on overall traffic flow and identifying irregularities.
- UTM
- Description: Monitors Unified Threat Management (UTM) activities, essential for security by encompassing various threat detection and prevention mechanisms.
- Webfilter
- Description: Monitors web filtering activities, helping in blocking access to malicious or inappropriate websites.
- Virus
- Description: Monitors virus detection and prevention events, crucial for maintaining system integrity and security.
- Spam
- Description: Monitors spam detection and prevention events, important for filtering out unwanted and potentially harmful emails.
- Intrusion
- Description: Monitors intrusion events, including Anomoly and Intrusion Prevention System (IPS) events.
- DLP
- Description: Monitors Data Loss Prevention (DLP) events.
- App Control
- Description: Monitors application control events, essential for managing and securing application usage within the network.
- Event
- Description: Monitors system and security events, providing detailed information about system operations and security incidents.
- VPN
- Description: Monitors VPN-related events, critical for secure remote access and connectivity.
- System
- Description: Monitors system-related events, providing detailed information about the operational status and changes within the Fortinet FortiGate system.
- Wireless
- Description: Monitors wireless network events, essential for managing and securing wireless network access.
- User Authentication
- Description: Monitors user authentication successes and failures.
And more!
Relationships
Dependencies:
Services are interconnected.
Hierarchical Structure:
Some services form a hierarchy, illustrating a layered approach to performance monitoring where base metrics support broader performance indicators.