Fortigate/Fortiwifi - diagnostic data flow across the router

Below is an example. I have a node 192.168.x.x which I doesn't know why it cannot goes to Internet through my Fortigate.  Since the traffic is likely denied, I cannot view it via Fortiview.

We can dump out the internal handling of the traffic at console:


# diagnose debug reset

# diagnose debug flow filter saddr 192.168.x.x

# diagnose debug flow show console 
show trace messages on console

# diag debug  enable 

# diagnose debug flow show console enable 
show trace messages on console

# diag debug flow trace start 100

Reference:
http://kb.fortinet.com/kb/documentLink.do?externalID=FD33882

http://docs-legacy.fortinet.com/fweb/4-3-5/cli/wwhelp/wwhimpl/common/html/wwhelp.htm?context=FortiWeb_Online_CLI_Reference&file=diagnose_5_9.html



Comments

Popular Posts