# Fortigate

Published articles for Fortigate.

This is one page of public article previews, not the complete archive. Follow Next page to continue. Summaries are not the original full articles.

## Transform and route security logs to Microsoft Sentinel tables using Observability Pipelines

DevFeed: [Transform and route security logs to Microsoft Sentinel tables using Observability Pipelines](<https://devfeed.tech/articles/transform-and-route-security-logs-to-microsoft-sentinel-tables-using-observability-pipelines-31547.md>)

Original publisher: [Read original article](<https://www.datadoghq.com/blog/observability-pipelines-microsoft-sentinel-packs/>)

Author: Zara Boddula; Danielle Park

Published: 2026-09-16T00:00:00Z

Content type: tutorial

Language: en

Sources: [Datadog | The Monitor blog](<https://devfeed.tech/sources/datadog-the-monitor-blog.md>)

Topics: [observability pipelines](<https://devfeed.tech/topics/observability-pipelines.md>), [SIEM, Security](<https://devfeed.tech/topics/siem-security.md>), [Security](<https://devfeed.tech/topics/security.md>), [log management](<https://devfeed.tech/topics/log-management.md>), [Microsoft](<https://devfeed.tech/topics/microsoft.md>)

Tags: [azure](<https://devfeed.tech/tags/azure.md>), [cisco-meraki](<https://devfeed.tech/tags/cisco-meraki.md>), [devsecops](<https://devfeed.tech/tags/devsecops.md>), [fortigate](<https://devfeed.tech/tags/fortigate.md>), [log-management](<https://devfeed.tech/tags/log-management.md>), [logs](<https://devfeed.tech/tags/logs.md>), [observability-pipelines](<https://devfeed.tech/tags/observability-pipelines.md>), [pipelines](<https://devfeed.tech/tags/pipelines.md>), [security](<https://devfeed.tech/tags/security.md>), [siem](<https://devfeed.tech/tags/siem.md>), [telemetry](<https://devfeed.tech/tags/telemetry.md>), [threat-detection](<https://devfeed.tech/tags/threat-detection.md>)

### AI overview

Datadog's Observability Pipelines Packs transform firewall, VPN, and network detection logs into Microsoft Sentinel table schemas before ingestion. The post describes Packs for Palo Alto Networks, Fortinet, Cisco ASA, Cisco Meraki, and ExtraHop, including filtering and noise reduction to help control Sentinel ingest volume while retaining visibility.

### Source excerpt

Learn how Observability Pipelines Packs map security logs to Microsoft Sentinel schemas and help control downstream ingest volume.

## Fortigate - VPN IPSec PSK XAuth z Android'a 4.x

DevFeed: [Fortigate - VPN IPSec PSK XAuth z Android'a 4.x](<https://devfeed.tech/articles/fortigate-vpn-ipsec-psk-xauth-z-android-a-4-x-27565.md>)

Original publisher: [Read original article](<https://gagor.pro/2013/03/fortigate-vpn-ipsec-psk-xauth-z-androida-4-x/>)

Author: Tom

Published: 2013-03-30T00:00:00Z

Content type: tutorial

Language: pl

Sources: [Tomasz Gągor](<https://devfeed.tech/sources/tomasz-gagor.md>)

Topics: [Virtual Private Network](<https://devfeed.tech/topics/vpn.md>), [Android](<https://devfeed.tech/topics/android.md>), [Command-line interface](<https://devfeed.tech/topics/cli.md>), [active directory](<https://devfeed.tech/topics/active-directory.md>), [iOS](<https://devfeed.tech/topics/ios.md>)

Tags: [active-directory](<https://devfeed.tech/tags/active-directory.md>), [android](<https://devfeed.tech/tags/android.md>), [cli](<https://devfeed.tech/tags/cli.md>), [fortigate](<https://devfeed.tech/tags/fortigate.md>), [fortios](<https://devfeed.tech/tags/fortios.md>), [ios](<https://devfeed.tech/tags/ios.md>), [ipad](<https://devfeed.tech/tags/ipad.md>), [ldap](<https://devfeed.tech/tags/ldap.md>), [os](<https://devfeed.tech/tags/os.md>), [security](<https://devfeed.tech/tags/security.md>), [vpn](<https://devfeed.tech/tags/vpn.md>)

### AI overview

A tutorial on configuring a Fortigate IPsec XAuth PSK VPN for Android 4.x phones and tablets to access an intranet. It covers CLI-based VPN setup, firewall rules, DNS access, and optional routing to external services, with notes about iOS compatibility.

### Source excerpt

Do niedawna na moim telefonie VPN'ami były: PPTP lub L2TP - oba niespecjalnie mi się podobały. Ale od wersji 4-tej pojawiły się dwa nowe tryby: IPSec Xauth PSK i IPSec Xauth RSA. W pierwszym autoryzacja wykorzystuje login i hasło, w drugim certyfikaty. Tryb IPSec Xauth PSK jest bardzo wygodny bo łatwo można połączyć go z zewnętrznymi mechanizmami uwierzytelniającymi np. LDAP, Active Directory, itp. Pokażę jak skonfigurować swojego Fortigate'a by umożliwić połączenie z telefonów i tabletów na Androidzie 4.x do "Intranetu"1. Większość konfiguracji można przeprowadzić tylko w trybie CLI - zakładam że wiesz jak to zrobić. To co wygodniej można zrobić w trybie WWW to głównie tworzenie reguł dostępu na zaporze.

## Fortigate: Warning: SQL Logging is not enabled

DevFeed: [Fortigate: Warning: SQL Logging is not enabled](<https://devfeed.tech/articles/fortigate-warning-sql-logging-is-not-enabled-27523.md>)

Original publisher: [Read original article](<https://gagor.pro/2012/04/fortigate-warning-sql-logging-is-not-enabled/>)

Author: Tom

Published: 2012-04-11T00:00:00Z

Content type: tutorial

Language: pl

Sources: [Tomasz Gągor](<https://devfeed.tech/sources/tomasz-gagor.md>)

Topics: [Logging](<https://devfeed.tech/topics/logging.md>), [Firewall](<https://devfeed.tech/topics/firewall.md>), [Command-line interface](<https://devfeed.tech/topics/cli.md>), [GUI](<https://devfeed.tech/topics/gui.md>)

Tags: [cli](<https://devfeed.tech/tags/cli.md>), [firewall](<https://devfeed.tech/tags/firewall.md>), [fortigate](<https://devfeed.tech/tags/fortigate.md>), [fortios](<https://devfeed.tech/tags/fortios.md>), [gui](<https://devfeed.tech/tags/gui.md>), [logging](<https://devfeed.tech/tags/logging.md>), [sql](<https://devfeed.tech/tags/sql.md>)

### AI overview

This tutorial explains how to address the "Warning: SQL Logging is not enabled" message on a Fortigate firewall after updating firmware to MR3. It describes changing the GUI log source using the CLI, with options including memory, disk, and FortiAnalyzer.

### Source excerpt

Jeśli po aktualizacji firmware na swoim firewall'u do wersji MR3 natrafisz na komunikat Warning: SQL Logging is not enabled przy dostępie do logów to prawdopodobnie musisz zmienić źródło logów dla interfejsu gui. Poniżej polecenie CLI i możliwe opcje: config log gui set logdevice {memory | disk | fortianalyzer} end Ja potrzebowałem ustawić tę opcję na fortianalyzer by uzyskać dostęp do moich logów.

## Sniffowanie w FortiOS

DevFeed: [Sniffowanie w FortiOS](<https://devfeed.tech/articles/sniffowanie-w-fortios-27514.md>)

Original publisher: [Read original article](<https://gagor.pro/2012/01/sniffowanie-w-fortios/>)

Author: Tom

Published: 2012-01-23T00:00:00Z

Content type: tutorial

Language: pl

Sources: [Tomasz Gągor](<https://devfeed.tech/sources/tomasz-gagor.md>)

Topics: [FortiOS](<https://devfeed.tech/topics/fortios.md>), [Fortigate](<https://devfeed.tech/topics/fortigate.md>), [debug](<https://devfeed.tech/topics/debug.md>), [Protocol (disambiguation)](<https://devfeed.tech/topics/protocol.md>)

Tags: [debug](<https://devfeed.tech/tags/debug.md>), [diagnose](<https://devfeed.tech/tags/diagnose.md>), [fortigate](<https://devfeed.tech/tags/fortigate.md>), [fortios](<https://devfeed.tech/tags/fortios.md>), [protocol](<https://devfeed.tech/tags/protocol.md>), [trace](<https://devfeed.tech/tags/trace.md>)

### AI overview

A Polish technical note documenting FortiOS commands for live traffic sniffing and IPsec tunnel diagnostics on Fortigate devices. It explains flow filters, console output, packet-count limits, and IKE debug commands, noting that IPsec diagnostics cannot be filtered according to the author.

### Source excerpt

Zawsze gdy potrzebuję zesniffować coś na żywo na Fortigate'ach muszę przeszukać Knowledge Base external link by przypomnieć sobie wszystkie polecenia do tego potrzebne. Tym razem robię notatki 😃 Sniffowanie diagnose debug enable diagnose debug flow filter addr ip address clear clear filter daddr dest ip address dport destination port negate inverse filter port port proto protocol number saddr source ip address sport source port vd index of virtual domain # np. diagnose debug flow filter saddr 10.10.80.3 diagnose debug flow filter daddr 8.8.8.8 diagnose debug flow filter dport 53 # wyświetl wyniki na konsoli diagnose debug flow show console enable # opcjonalne: wyświetla nazwy funkcji np. odwołania do routingu, itp diagnose debug flow show function-name enable # uruchomienie sniffowania - warto podać na końcu jakaś wartość # by sniffowanie zakończyło się po takiej liczbie pakietów # w przeciwnym wypadku wyniki będą się wypisywać na konsoli # aż uda nam się na oślep wyłączyć sniffowanie diagnose debug flow trace start 100 # zresetowanie filtrowania flow diagnose debug reset # wyłączenie sniffowania diagnose debug disable Diagnostyka tuneli IP-Sec # tutaj jest dużo prościej, najpierw włączamy debuga diagnose debug enable # a potem diagnose debug application ike 2 # lub dla bardzo, bardzo szczegółowych logów diagnose debug application ike -1 Niestety nie ma tutaj możliwości filtrowania (albo jeszcze o tym nie wiem), więc jeśli mamy dużo aktywnych tuneli to najlepiej zbierać wypisywane komunikaty do pliku i dopiero przeglądać.

## Konfiguracja modemu USB iPlus na urządzeniach FortiGate

DevFeed: [Konfiguracja modemu USB iPlus na urządzeniach FortiGate](<https://devfeed.tech/articles/konfiguracja-modemu-usb-iplus-na-urzadzeniach-fortigate-27508.md>)

Original publisher: [Read original article](<https://gagor.pro/2011/12/konfiguracja-modemu-usb-iplus-na-urzadzeniach-fortigate/>)

Author: Tom

Published: 2011-12-29T00:00:00Z

Content type: tutorial

Language: pl

Sources: [Tomasz Gągor](<https://devfeed.tech/sources/tomasz-gagor.md>)

Topics: [USB](<https://devfeed.tech/topics/usb.md>), [Command-line interface](<https://devfeed.tech/topics/cli.md>), [OpenSSH](<https://devfeed.tech/topics/openssh.md>), [huawei](<https://devfeed.tech/topics/huawei.md>)

Tags: [command-line](<https://devfeed.tech/tags/command-line.md>), [dns](<https://devfeed.tech/tags/dns.md>), [firmware](<https://devfeed.tech/tags/firmware.md>), [fortigate](<https://devfeed.tech/tags/fortigate.md>), [fortios](<https://devfeed.tech/tags/fortios.md>), [huawei](<https://devfeed.tech/tags/huawei.md>), [ssh](<https://devfeed.tech/tags/ssh.md>), [usb](<https://devfeed.tech/tags/usb.md>)

### AI overview

This tutorial explains how to configure an iPlus USB modem on FortiGate devices. It covers using the modem as a backup connection, configuring it through the command line via Telnet or SSH, setting the SIM PIN, restarting the device, and the resulting modem interface and DNS proxy. The author tested Huawei E156G and E173 modems on FortiGate devices running MR2 firmware.

### Source excerpt

Zdarzyło mi się bawić sprzętowymi Firewallami firmy Fortigate - chcąc sprawdzić działanie pewnych funkcji potrzebowałem uruchomić dwa/trzy pudełka na osobnych łączach. Pomysł polegał na próbie zmuszenia pudełek do współpracy z modemem iPlus na USB. Drugim fajnym zastosowaniem tego triku jest możliwość wykorzystania iPlusa jako "zapasowego łącza" w przypadku awarii głównego. Dzięki pomocy inżyniera Fortigate szybko udało mi się zebrać potrzebne do działania parametry, które należy uruchomić poprzez command line (telnet/ssh).