How can you resolve the source and destination IP addresses, without introducing any additional performance impact to FortiAnalyzer?

In the FortiAnalyzer FortiView, source and destination IP addresses from FortiGate devices are not resolving to a hostname.

How can you resolve the source and destination IP addresses, without introducing any additional performance impact to FortiAnalyzer?
A . Resolve IP addresses on a per-ADOM basis to reduce delay on FortiView while IPs resolve
B . Configure # set resolve-ip enable in the system FortiView settings
C . Configure local DNS servers on FortiAnalyzer
D . Resolve IP addresses on FortiGate

Answer: D

Explanation:

https://packetplant.com/fortigate-and-fortianalyzer-resolve-source-and-destination-ip/

“As a best practice, it is recommended to resolve IPs on the FortiGate end. This is because you get both source and destination, and it offloads the work from FortiAnalyzer. On FortiAnalyzer, this IP resolution does destination IPs only”

Subscribe
Notify of
guest
0 Comments
Inline Feedbacks
View all comments