Created on
06-25-2025
08:32 AM
Edited on
08-10-2025
11:02 AM
By
Stephen_G
| Description | This article describes how to check the hit count for a local-in policy. |
| Scope | FortiGate v7.0.4+. |
| Solution |
Use the following command to check for local-in policy hit count:
diagnose firewall iprope show 100001 <policy id>
This command will show the first hit and the last hit as well.
Example output: Local-in policy configuration:
config firewall local-in-policy
diagnose firewall iprope show <ID> <stage> diagnose firewall iprope show 100001 1
To clear the counter, the following command can be used: diagnose firewall iprope clear <ID> <stage> diagnose firewall iprope clear 100001 1
For a comprehensive explanation of iprope policy groups, refer to Technical Tip: iprope policies group. |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.