To manage local user accounts, go to Authentication > User Management > Local Users. Select to create a new user. Select to import local user accounts from a CSV file or FortiGate configuration file.
FortiSIEM provides two SSH user accounts: User: 'root' and password: 'ProspectHills' User: 'admin' and password: 'admin1'
Go to System Settings > Event Log to view the local log list. Filter the event log list based on the log level, user, sub type, or message. See Event log filtering. Download the event logs in either CSV or the normal format to the management computer.