Jun 23 2022 08:31 AM
New to these products and was told we could use Sentinel to pull data from Cymulate and our Fortigates. Anyone know how to do this? I know with have FortiSEIM, not sure on SOAR in our environment (if it would be useful for this we could get it added).
Thanks
Jun 23 2022 10:10 AM
Jun 23 2022 10:43 AM
@Clive_Watson That appears to use SOAR, which we don't currently have. Trying to find out if there is a way without an additional spend.
Jun 23 2022 02:59 PM
Jun 26 2022 03:19 AM
Hello @ChrisF71 ,
1. You can forward Syslog from Fortinet to Sentinel using Sentinel Log Forwarder:
Technical Tip: Integrate FortiGate with Microsoft ... - Fortinet Community
Deploy a log forwarder to ingest Syslog and CEF logs to Microsoft Sentinel | Microsoft Docs
2. If Cymulate supports Syslog, you can use the same log forwarder.