The ITSI Content Pack for Fortinet FortiGate from Kinney Group is specifically designed to monitor system health related to Fortinet FortiGate. It leverages Splunk ITSI to provide in-depth analysis and visualization of logs for Fortinet FortiGate, ensuring critical systems are operating optimally. This content pack is an essential tool for IT professionals looking to enhance the reliability and performance of their Fortinet FortiGate infrastructure.
- Comprehensive Performance Monitoring: Offers detailed insights into Fortinet FortiGate system health, network traffic, and security events, enabling optimized resource utilization.
- Critical System Status Tracking: Monitors the real-time operational status of Fortinet FortiGate systems, helping IT professionals swiftly identify and address potential issues.
- Enhanced Security and Efficiency: Facilitates better decision-making on security measures and system adjustments by analyzing performance trends and detecting anomalies across the infrastructure.
This ITSI Content Pack is open source and available for community collaboration and enhancement on GitHub.
For more information about Kinney Group's Splunk Products, visit our website.
The ITSI Content Pack for Fortinet FortiGate contains service definitions and KPIs ready to import to ITSI. The KPI Thresholds and importance values are set to defaults so that they can be tuned manually for your use case. After configuration, this content pack provides a comprehensive monitoring solution for Fortinet FortiGate systems.
Fortinet FortiGate Log Reference
Kinney Group ITSI Content Pack Blog
For more information about Kinney Group's Splunk Products, visit our website.
Fortinet FortiGate monitoring encompasses several specialized services, each targeting specific aspects of system performance and security:
- Fortinet FortiGate System Health
- Description: Monitors overall health and performance of the Fortinet FortiGate system, encompassing all aspects including traffic, security, and event logs.
- Traffic
- Description: Monitors network traffic passing through the Fortinet FortiGate, capturing all data packets and their statuses.
- Forward Traffic
- Description: Monitors forward network traffic and anomalies, focusing on overall traffic flow and identifying irregularities.
- UTM
- Description: Monitors Unified Threat Management (UTM) activities, essential for security by encompassing various threat detection and prevention mechanisms.
- Webfilter
- Description: Monitors web filtering activities, helping in blocking access to malicious or inappropriate websites.
- Virus
- Description: Monitors virus detection and prevention events, crucial for maintaining system integrity and security.
- Spam
- Description: Monitors spam detection and prevention events, important for filtering out unwanted and potentially harmful emails.
- Intrusion
- Description: Monitors intrusion events, including Anomoly and Intrusion Prevention System (IPS) events.
- DLP
- Description: Monitors Data Loss Prevention (DLP) events.
- App Control
- Description: Monitors application control events, essential for managing and securing application usage within the network.
- Event
- Description: Monitors system and security events, providing detailed information about system operations and security incidents.
- VPN
- Description: Monitors VPN-related events, critical for secure remote access and connectivity.
- System
- Description: Monitors system-related events, providing detailed information about the operational status and changes within the Fortinet FortiGate system.
- Wireless
- Description: Monitors wireless network events, essential for managing and securing wireless network access.
- User Authentication
- Description: Monitors user authentication successes and failures.
And more!
Services are interconnected.
Some services form a hierarchy, illustrating a layered approach to performance monitoring where base metrics support broader performance indicators.
Fortinet FortiGate Add-On for Splunk
Kinney Group ITSI Content Pack Blog
To provide feedback, visit our Github and Readme for our content packs.
For more information about Kinney Group's Splunk Products, visit our website.
Version | Date | Description |
---|---|---|
0.0.1 | 06/03/24 | Initial Preview Release |