← Back to Projects
Business Systems House 2026
SIEM & Centralized Firewall Syslog Aggregation
FortiAnalyzer Syslog-ng SIEM FortiGate Linux (Oracle Linux 9.5) Logrotate
SIEM & Centralized Firewall Syslog Aggregation
Deployed a dedicated Syslog server infrastructure to aggregate and index security event logs from enterprise FortiGate firewalls and core switches.
Key Features & Implementation
- Centralized Log Ingestion: Standardized Syslog forwarding protocols from perimeter firewalls to an isolated log collector appliance.
- SIEM Integration & Parsing: Configured log parsing rules and automated alerts for brute-force attacks, policy violations, and anomaly detection.
- Retention & Compliance: Established automated log compression, rotation, and encrypted long-term storage to meet ISO/UAE compliance.