Skip to main content
Skip table of contents

Fortimanager Log Messages

Vendor Documentation

Classification

Rule NameRule TypeCommon EventClassification
Fortimanager Log MessagesBase RuleGeneral InformationInformation
User SSH Logon FailureSub RuleDenied SSH SessionWarning
Connection Reset By PeerSub RuleConnection ResetNetwork Traffic

Mapping with LogRhythm Schema  

Device Key in Log MessageLogRhythm SchemaData TypeSchema Description
logid<vmid>NumberIt is a unique 10-digit identifier for that specific log.

<severity>Text\StringEach log entry contains a Level (level) field that indicates the estimated severity of the event.
remote_ip
<sip>IP AddressN/A
remote_port
<sport>NumberN/A
user<login>Text\String
N/A
msg<subject>Text\StringN/A
JavaScript errors detected

Please note, these errors can depend on your browser setup.

If this problem persists, please contact our support.