FortiSIEM
FortiSIEM provides Security Information and Event Management (SIEM) and User and Entity Behavior Analytics (UEBA)
FortiKoala
Staff
Staff
Article Id 193734
Description

How do I search using AD groups


Scope

FAQ


Solution

GroupName can now be added to your searches, and it is possible to filter your search using specific AD group names. Searching can also be done using SAMAccountName.


AD group names can be used as a policy condition.  The string GroupName can be used as a policy condition, and can also be used in Dashboard widgets.  


(Caveat: GroupName can be used within the search bar but not within RawEPL).




Contributors