7.2.1 Encrypt Log Transmission to FortiAnalyzer / FortiManager

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

Enable encryption for logs that are sent to FortiAnalyzer or FortiManager.

Provides encryption for logs that are sent to FortiAnalyzer or FortiManager to prevent logs being collected and viewed as they traverse the network.

Solution

Secure log transfer settings can only be configured on CLI:

config log fortianalyzer setting
set reliable enable
set enc-algorithm high
end

See Also

https://workbench.cisecurity.org/benchmarks/15284