Task 1 - Create Automation Trigger
This task creates the trigger for when an Admin logs in or out or fails to login.
- Login to the FortiGate using the IP address and credentials from the Terraform output.
- Click through any opening screens for FortiGate setup actions, no changes are required.
- Click “Security Fabric”
- Click “Automation”
- Click “Trigger”
- Click “Create New”
- Click “FortiOS Event Log” in Miscellaneous section
- Enter
- Name:
Admin activity trigger
- Name:
- Click “+” in Event field
- Enter search term “Admin Log” in “Select Entries”
- Click these entries to add to the Event field
- Admin Login failed
- Admin Login successful
- Admin Logout successful
- Click Close
- Click OK