The packet sniffer "sits" in the FortiGate and can sniff traffic on a specific Interface or on all Interfaces. There are 3 different Level of Information, also known as Verbose Levels 1 to 3, where verbose 1 shows less information and verbose 3 shows the most information. Verbose 4, 5 an...
All FortiGate units have a powerful packet sniffer on board. If you know tcpdump you should feel comfortable using the FortiGate Sniffer. See the related article "Packet capture (sniffer) tips" for additional sniffer tips. Scope: All FortiOS Note: Other Fortinet appliances also providing a CLI ...
Debug the packet flow when network traffic is not entering and leaving the FortiGate as expected. When debugging the packet flow in the CLI, each command configures a part of the debug action. The final command starts the debug. For information about using the debug flow tool in the GUI,...
Maybe, but you can monitor the diag vpn ike gateway output from the cli. If any remote-gateway is using a port that' s 4500/udp for the destination, than NAT-T is involved. If your using rfc1918 address for the tunnel end-points, than NAT-T is an issue...