Technical Tip: How to create packet capture on the policy level
Description | This article describes how to create packet capture at the policy level. |
Scope | FortiGate. |
Solution | This guide shows how to create an automated packet capture. Â It is possible to enable packet capture on the firewall policy using the below command: Â ![]() Â If not already disabled, this will turn off auto ASIC offloading and display a notification. When packet capture is disabled, auto ASIC offloading is automatically re-enabled. Â When a firewall policy with packet capture enabled is matched, FortiGate automatically begins capturing packets. Â ![]() Â To download it, select the logs, then select details. Â ![]() Â Select Archived Data, then select the download button. Â ![]() Â This can be helpful when capturing traffic that cannot be generated on demand.
|




