Can Fortinet IPS correlate with Qualys vuln scan data
Nessus and Qualys scanners can correlate against Sourcefilre IPS, I was wondering of Fortinet IPS can also so I get use the ThreatLevel formula as it should be used.
Re: Can Fortinet IPS correlate with Qualys vuln scan data
Thank you for your post.
Please could you clarify the detail of the question that you are asking?
From the short statement you have made, I am guessing that you wish to take "event/log" data from the Fortinet IPS and have it sent to ArcSight ESM so that content can be developed to correlate with vulnerability scanner data for some use cases that you have in mind?
To bring information from Fortigate IPS you would need a SmartConnector. I found this documentation link for the SmartConnector-for-Fortinet-FortiGate-Syslog which could provide you with the source event connection you need to Fortigate IPS appliance if that is the appliance you are using.
If I did not interpret your question correctly, then if we know a little more about what you are trying to achieve then the experience in this forum may be able to make some suggestions for you.
Thanks and regards,
If you find that this or any post resolves your issue, please be sure to mark it as an accepted solution.