FortiGate Firewall: Life of a packet troubleshooting

preview_player
Показать описание
In this video, I show two killer commands that often put you on the right footing for troubleshooting. Everything has a source and a destination these two commands will tell you exactly what the FortiGate is or isn't doing with the packets and can frequently put support cases to bed.

Diagnose debug flow filters -

// Chris SOCIAL //

// Keywords //

Fortinet
Fortigate
Fortigate Firewall Troubleshooting
FortiGate Firewall Command Line Troubleshooting
Life Of a Packet
Notification
Fortinet Fabric
Fortinet how to
Fortinet guide
Fortinet network security
Cybersecurity

// HashTags //

#cybersecurity
#networking
#fortinet
Рекомендации по теме
Комментарии
Автор

New sub, thanks for the upload. I've worked with Fortigates for about 5 years, the first 4 years pretty plain an simple, my new gig is a global company, so there is a lot of routing and troubleshooting and these troubleshooting commands are the foundation that's needed to resolving issues.

GoodGameOKC
Автор

Like the video but increase the font size on the cli

alcohonis
Автор

Sir,
I need to forward multicast IP packets coming from a MPLS router through the Fortinet Fortigate 60F firewall. I have configured the firewall as follows :

1) Under network--->interfaces---> two ports have been configured, one as "INPUT" (to receive data from the router) and other as "OUTPUT" (to send data).

The "INPUT" port IP address is in the same IP group as the router port to which it is connected.

The "OUTPUT" port IP address is of a different group.

2) Under policy & objects--->addresses--->total five (05) multicast IPs have been defined. Interfaces have been set to 'all/any'.

3) Under policy & objects--->multicast policy--->Input interface is set to "INPUT", output interface to "OUTPUT", source address to "ALL/ANY", destination address to the five (05) multicast addresses that have been already defined.

Protocol is set to UDP with port range from 1 - 65535.

Strangely, I am getting only one multicast IP on the "OUTPUT" port. I mean, the firewall is forwarding only one multicast group from INPUT to OUTPUT port.

It will be very helpful for me if you can provide any solution for this.

avatimus
Автор

Thanks bro. Could you provide me personal training session ?

alwayskarbala
visit shbcf.ru