Skip to main content
kraditheo
New Member
August 19, 2015
Question

Can We Alert Traffic Shaping Rule?

  • August 19, 2015
  • 4 replies
  • 8598 views

Hi,

I want to ask, is it possible to trigger an event on FortiGate when traffic reach or exceed traffic shaping (TS) rule?

Let's say, if there is a TS rule on LAN to WAN interface that say limit traffic to 5 MB,

is it possible to trigger event when the actual throughput from LAN to WAN interface reach or exceed 5 MB,

and then send an email notification when the event occur.

Please tell me how it works.

Thanks a lot.

    4 replies

    gschmitt
    New Member
    August 19, 2015

    Not as far as I know but I don't actually see what the benefit of this would be

     

    TCP traffic, by protocol, tries to establish the maximum bandwidth and transport at it

    kraditheo
    kraditheoAuthor
    New Member
    August 20, 2015

    gschmitt wrote:

    Not as far as I know but I don't actually see what the benefit of this would be

     

    TCP traffic, by protocol, tries to establish the maximum bandwidth and transport at it

    The use case of this is to alert user when one of their interface have maximum bandwidth allowed and have possibility to experience packet drop.

    vjoshi_FTNT
    Staff
    Staff
    August 20, 2015

    Hello,

     

    Not for the Traffic Shaping. Though you have more control on the browsing with the web filter quota, where even the user is notified on how much bandwidth he has used.

     

    However, it has some limitations as it is only applicable for the WEB traffic.

     

    Application control has got traffic shaping options, which I believe should generate logs, worth a check.

     

     

    AtiT
    New Member
    August 20, 2015

    Hi,

    You should able to do it from FortiAnalyzer. The traffic log contains fields for Bytes Dropped - see the attached image.

    Tested for high bandwidth connection (shaper was shaping the traffic) and low bandiwth (shaper was not active - line BW did not reached the shaper limit).

     

    Probably you can do it from some syslog server where you will check these fields in the traffic log and send an email.

     

    Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
    Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!