# FortiGate-logs exporten from Graylog with GELF into ELK and read by "Fortinet Logs"

**URL:** <https://discuss.elastic.co/t/fortigate-logs-exporten-from-graylog-with-gelf-into-elk-and-read-by-fortinet-logs/308368>\
**Category:** Logstash\
**Created:** [June 28, 2022, 1:57pm UTC](https://discuss.elastic.co/t/fortigate-logs-exporten-from-graylog-with-gelf-into-elk-and-read-by-fortinet-logs/308368 "2022-06-28T13:57:24Z")\
**Posts on this page:** 2\
**Page:** 1

<div class="post-metadata">

**Author:** ![j0han](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/j0han/32/110621_2.png) [@j0han](https://discuss.elastic.co/u/j0han)\
**Post date:** [June 28, 2022, 1:57pm UTC](https://discuss.elastic.co/t/fortigate-logs-exporten-from-graylog-with-gelf-into-elk-and-read-by-fortinet-logs/308368/1 "2022-06-28T13:57:24Z")

</div>

Hi all!  
I have a problem where I'm getting logs exported from Graylog with GELF.  
I can read the logs with logstash and I get the data I need exported as JSON.

But I'm having big problems to get the integration "Fortinet Logs" to read the data.  
As I have understood it wan't it in line-format? I have played around with the "codec =\> line" but can't get it to work.

Anyone had the same setup and problem?

Big thanks in advance,  
Johan

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [July 26, 2022, 1:57pm UTC](https://discuss.elastic.co/t/fortigate-logs-exporten-from-graylog-with-gelf-into-elk-and-read-by-fortinet-logs/308368/2 "2022-07-26T13:57:57Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
