FortiAnalyzer
FortiAnalyzer can receive logs and Windows host events directly from endpoints connected to EMS, and you can use FortiAnalyzer to analyze the logs and run reports.
FortiKoala
Staff
Staff
Article Id 191264
Description
This article describes how to enable remote management for FortiAnalyzer, FortiGate and FortiManager

Solution
1) Configure remote management access in the network interface options page of the Fortigate, FortiAnalyzer or FortiManager GUI System --> Network

Editing the interface that connects the hardware to the Internet.
 
jbody_13535_Knova135.jpg
 
2) Edit the interface and activate SSH and HTTPS, the most secure options for management access to the device.
jbody_13535_Knova136.jpg
 
Create an administrative account for the Support Engineer.
 
3) To add a admin account, go to System --> Admin and selecting Create New.
 
jbody_13535_Knova137.jpg
 
 
4) With the public IP the Support engineer is using, define a trusted host for this account.
 
jbody_13535_Knova133.jpg

Access Conflicts

Depending on the configuration of inbound services on your FortiGate unit, HTTPS access may be in conflict.

For example, if a static NAT Virtual IP is configured to use the interface IP of your FortiGate unit, all data received on that IP is forwarded to the internal server. If this is the case, we can explore shared, web-based remote access options.

If a port forward VIP using HTTPS or port 443 is in use, change the default HTTPS management port to another that is not in use.

This option is only available in FortiOS 3.0 and above by going to System --> Admin --> Settings.
 
jbody_13535_Knova138.jpg
 
jbody_13535_Knova139.jpg
 
 
Once changed, HTTPS access to the FortiGate web-based manager is managed with a colon and the new port. For example - https://192.168.1.99:4430.

Related Articles

Working with the Technical Assistance Center (TAC) - Remote Management Access

Contributors