Graylog doesn't parse logs from Fortigate 400D


Hello! I’m trying to send logs from Fortigate 400D and all seems working at first glance:

But when i try to look at them, graylog shows “Nothing found”.

After that, i made several other inputs and tested them. Only Raw/Plaintesxt UDP worked for FortiGate 400D. But this is obvious that they are not readable in that format.

Does anybody solved this?


(Jan Doberstein) #2

maybe you can add more information to this issue:

your only option is to use the RAW Input and parse the messages with processing pipelines (or extractors) into something readable.

(system) #3

This topic was automatically closed 14 days after the last reply. New replies are no longer allowed.