FortiAnalyzer
FortiAnalyzer can receive logs and Windows host events directly from endpoints connected to EMS, and you can use FortiAnalyzer to analyze the logs and run reports.
ckarwei
Staff
Staff
Article Id 190088

Description


This article describes how to increase the number of events displayed in event monitor.

If events created by an event handler only go back a few days, the maximum number should be increased or event handler configuration should be tweaked to generate less.

 

Scope

 

FortiAnalyzer.

Solution

 

  1. Go to Event Monitor -> All events, will only display up to 500 events (depending on the FortiAnalyzer model).
  2. It is possible to increase the number of alerts displayed with the commands below.

It is possible to set the alert count range between 100 and 100000 (depending on the FortiAnalyzer model).

 

FAZ # config system log alert
(alert) set max-alert-count <integer>
(alert) end