I'm new with ELK and I installed Elasticsearch, Kibana and Logstash in the same server.
I followed this procedure to send logs from FortiAnalyzer to ELK.
I tried to send logs to SIEM, but I have to setup Beats first. Even with filebeat installed I can't see the logs coming to Beats.
The logs from FortiAnalyzer is coming in the right way, but I don't know how to appear this logs in SIEM side.
Could you help me, please?