Firewall Log Management · Panel › Devices

Devices: all your firewalls in one list.

The Devices page brings together the status, identity, and syslog configuration of every firewall connected to izgate in one place. Devices automatically recognized by serial number — FortiGate and MikroTik — are shown with live CPU/RAM/session metrics.

  • Card and list view
  • Automatic device identity by serial number
  • Log Forwarding: ready-made syslog + RADIUS configuration
Identity
Serial number
Status
Online / quiet / never seen
Metrics
FortiGate + MikroTik only
Sampling
Every minute
API Test
Connection + certificate + serial
MikroTik
One-click setup (awaiting field testing)
izgate Devices page: KPI cards, a FortiGate device in card view, status and metric indicators
Devices: KPI cards, card view, device status, and metrics
What's on the screen?

Sections of the Devices page

  1. Top bar: the "Devices" heading, a "License" badge showing the currently used seat count, a refresh button, Export, Bulk Actions, and a "New Device" button.
  2. KPI cards: total device count, an online Wi-Fi/session indicator, offline device count, total session count (with a sparkline), an average usage indicator, and a utilization gauge — each backed by a small chart.
  3. Filter row: a device name/IP/model search box, All Statuses, All Models, and All Locations dropdowns; a Card View / List View toggle on the right.
  4. Device card: the device name and a status label (e.g. "Online"), location, model name and serial number, WAN/LAN IP addresses, a device image; a three-dot menu in the top right.
  5. Metric rings: CPU, RAM, and session count, each with a circular percentage gauge.
  6. Status badges: "API Connected," "Logs Active," "5651 Active," and the device's firmware version (e.g. "v5.6.8").
  7. Footer: pagination and a per-page row count selector.
What can you do?

From inventory to configuration, on one page

The Devices page isn't just an inventory list; it's the hub for managing every device's identity, syslog target, and — on supported devices — live status.

Identity by serial number

On devices that carry a serial (FortiGate/Sophos/Palo Alto), device identity is the serial number, not the IP; the address is learned automatically from the first log, so entering a syslog IP isn't required. Drivers without a serial (MikroTik, pfSense, OPNsense, generic) need an address entered.

Live metrics (FortiGate + MikroTik)

On these two API-connected drivers, CPU, RAM, and session count are sampled every minute and shown as ring charts on the card. Other drivers don't have these metrics.

API Test

Verifies the connection, the certificate fingerprint (TOFU pinning), and the serial number match with one button. A FortiGate-specific "fix session setting" button prevents guests from dropping early during handover when the idle timeout is too short.

Device menu

The three-dot menu on each card offers Edit, Log Forwarding, API Test, Remove license, Disable, and Delete.

Log Forwarding panel

Opens automatically right after a new device is registered: the syslog target and ports (UDP 5514, TCP 5515, TLS only if a certificate is defined), RADIUS ports (1812/1813), and a ready-made CLI/step list per driver.

MikroTik one-click setup

For MikroTik devices registered with RouterOS 7 REST credentials, the panel automatically applies syslog, hotspot, login page, CAPsMAN Wi-Fi, and Let's Encrypt steps. Tested against a simulated RouterOS; field testing with a real device is still pending.

izgate Edit Device panel: name, driver, serial number, location, syslog, and verification path fields
Edit Device: identity, location, syslog, and verification path fields
Edit Device

Every device setting, from identity to verification

The Edit screen opens as a panel from the right; it starts with the required Name, Driver, and Serial Number fields. The Location section has a location name and latitude/longitude; the Syslog section has Syslog IP, Syslog Identity, and Management IP; the Verification section has a Verification Path (e.g. "Firewall API (recommended)") and an API address. A link in the panel jumps straight to the Log Forwarding screen.

  • The address can be left blankOn devices that carry a serial, leaving the address blank while editing keeps the learned address; if the serial changes, the learned address is cleared.
  • LocationThe location name and latitude/longitude set the device's approximate position on the device map in Overview.
izgate Log Forwarding Settings panel: syslog target, UDP/TCP ports, RADIUS ports, and a ready-made CLI per driver
Log Forwarding Settings: syslog target, ports, RADIUS, and a ready-made CLI
Log Forwarding Settings

Copy, paste, save

The panel shows the Syslog Target (e.g. wifi.izgate.com) at the top along with UDP 5514 and TCP 5515 badges. Below, the Syslog section lists the address and port details, and the RADIUS section lists the address, the Authentication Port (1812), and the Accounting Port (1813), each as a field you can copy individually. Further down, the "Device Configuration" section lets you pick a driver (e.g. FortiGate) and switch between UDP/TCP options to generate a ready-made CLI command block (e.g. config log syslogd setting); a copy button pastes the command straight into your firewall.

Explore Firewall Log Management

How to use it

Connect a firewall to izgate in four steps

1

New Device

Register the device by entering a name, driver, and serial number (or an address, for drivers without a serial).

2

Log Forwarding

The panel that opens right after registration gives you the syslog target and a driver-specific ready-made configuration.

3

Apply on the firewall

Apply the CLI commands or step-by-step instructions in the device's own management interface.

4

Verify

The address is learned automatically once the first log arrives (on devices with a serial); on API-connected devices, "API Test" verifies the connection, certificate, and serial match.

Good to know

Limits, stated plainly

CPU/RAM/session metrics and live sampling work only on FortiGate and MikroTik; other drivers (Sophos, Palo Alto, pfSense, OPNsense, generic syslog) don't have these metrics or API Test.
MikroTik one-click setup (syslog, hotspot, login page, CAPsMAN, Let's Encrypt) has been verified through code and simulated-RouterOS tests; field testing with a real RouterOS device hasn't happened yet.
If the address holds but the serial doesn't match, no event is recorded: the operator shows a "SERIAL @ address (unregistered)" quarantine device and a health warning; this isn't a bug — it's a safety behavior that prevents logs from being written to the wrong device.
Frequently asked questions

About the Devices page

Do I have to enter an IP address when adding a firewall?

No, for devices that carry a serial number (FortiGate, Sophos, Palo Alto); device identity is the serial number, and the address is learned automatically from the first incoming log. Drivers without a serial (MikroTik, pfSense, OPNsense, generic syslog) require an address.

Which devices show CPU/RAM/session metrics?

Only API-connected FortiGate and MikroTik devices; metrics are sampled every minute. Other drivers don't have these indicators.

What does API Test do?

It verifies the connection to the device, the certificate fingerprint pinned via TOFU, and the serial number match; on FortiGate it also offers an option to fix the session (idle timeout) setting.

Is the MikroTik one-click setup production-reliable?

The setup flow (syslog, hotspot, login page, CAPsMAN, Let's Encrypt) has been tested end to end with unit tests and a simulated RouterOS, but hasn't yet been tried in the field with a real RouterOS device. The FortiGate path — both logging and the firewall API — has been verified end to end on a real device.

What actions are available from the device menu?

The three-dot menu on each card offers Edit, Log Forwarding, API Test, Remove license, Disable, and Delete.

See all questions

Making your network Law No. 5651 compliant is a one-day job.

Configure izgate Cloud based on your number of firewall devices and storage needs; no setup, get started in minutes. Call us with any questions.