Skip to main content
franz
New Member
April 30, 2011
Question

Problem with the debug flow

  • April 30, 2011
  • 5 replies
  • 8057 views
Hello, i have a problem, when I enable the debugging(flow) I can not display any messages, why? debug output: enable console timestamp: enable diag debug flow show console: enable Thanks

    5 replies

    bmann
    New Member
    April 30, 2011
    This commands are right, but you' ve missed in manual other. diag debug flow trace start X where X in number of packets I think with diag debug flow filter ........... you can limit traffic to flow debug by IPs, ports etc.
    franz
    franzAuthor
    New Member
    May 1, 2011
    Hello, but also with the numbers it does not work....
    FortiRack_Eric
    New Member
    May 2, 2011
    perhaps start with diag debug enable to show output on console and diag debug flow show console enable diag debug flow show funct enable cheers, Eric
    franz
    franzAuthor
    New Member
    May 2, 2011
    Is the same.....don' t work :(
    red_adair
    New Member
    May 2, 2011
    Did you accidentally set a filter ? # diag debug flow filter It also doesn' t show Traffic that is offloaded to a NP2/NP4/SoC Network Processor. Only (eg in TCP) the initial Handhshake should be seen.
    franz
    franzAuthor
    New Member
    May 2, 2011
    No, i can' t view nothing... I view only with the " diagnose sniffer" is it possible that debugging is written to the flash?
    FortiRack_Eric
    New Member
    May 2, 2011
    nope, please post the output of diag debug flow filter perhaps your filter is wrong the std procedure for deb flow is: dia debug enable dia deb flow show console enable dia deb flow show funct enable dia deb flow filter <filters> dia deb flow trace start <no of packets>
    franz
    franzAuthor
    New Member
    May 2, 2011
    Yes i know, diagnose debug flow filter vf: any proto: any Host addr: any Host saddr: any Host daddr: any port: any sport: any dport: any sorry but don' t work...
    Schuler
    New Member
    May 17, 2011
    Do You have MR3? And a box bis NP2 asic? I' ve seen a similar behavior with a FG200B. I see traffic with " diag sniffer packet..." , but don' t see a session with " diag debug flow" .
    franz
    franzAuthor
    New Member
    May 17, 2011
    Yes I have the firmware 4MR3 but i don' t have a box NP2. with this firmware I also abnormal behavior with the IPS, it informed me of the false attacks and after 3 reboot come back normal.