Skip to main content
aparna
New Member
May 3, 2019
Question

Not able to see IDS traffic on Log & Report->'Sniffer Traffic' page.

  • May 3, 2019
  • 0 replies
  • 1758 views

Hi,

 

I have Fortigate 800C with Flow based Inspection and configured one arm sniffer on an interface and used 'config firewall sniffer' to enable ips sensor. And ips sensor used is default 'sniffer-profile' present on the Fortigate and selected to monitor and log.Below is config used for this. But, when i see on 'Log&Report', Sniffer Traffic is not displaying the packets received by this interface-port9.

set status enable

set logtraffic all

set non-ip enable

set interface "port9"

set ips-sensor-status enable

set ips-sensor "sniffer-profile"

 

Can anyone let me know is there any extra setting/config required for the IDS logging/reporting to work on Fortigate....?