FortiSIEM
FortiSIEM provides Security Information and Event Management (SIEM) and User and Entity Behavior Analytics (UEBA)
Andy_G
Staff
Staff
Article Id 192881

Description

Summary of Topic

When collectors fail to register and some of the KB articles have been attempted and failed, this is another article to explain some uncommon pitfalls.

[NOTE: This article will be updated further with more uncommon one-offs that can be tested]

 

Additional Information

Some features that the collectors have that can be reviewed to allow registration and event collection

 

Event Collection:

- iptables may not have all the ports open in order to collect or send data to and from the collector

 

Registration and data sending:

- MTU size may not be in sync with the network's requirements, this would cause packet fragmentation and would not allow proper restructuring of packets on the receiving end.

 



 
Contributors