Created on
03-05-2010
01:48 PM
Edited on
01-02-2025
09:53 PM
By
Jean-Philippe_P
Description
This article explains how to configure support for sFlow. This feature was introduced in FortiOS 4.0MR2.
Scope
FortiGate.
Solution
set vdom-sflow enable
set collector-ip x.x.x.x
set collector-port xxxx
end
set sample-rate xxxx (sample every xxxx packets).
set sample-direction both (can be also set for only tx, or only rx).
set polling-interval xx (in seconds).
end
config system sflow
config collectors
edit <id>
set interface-select-method {auto | sdwan | specify} <----- Specify how to select the outgoing interface to reach the server (default = auto).
set interface <interface> <----- Enter the outgoing interface to reach the server.
next
end
end
Note: Configuring sFlow on any interface disables all NP7, NP6, NP6XLite, or NP6Lite offloading for all traffic on that interface.
Related articles:
Troubleshooting Tip: Sflow and netflow issues
Technical Note : Third party sflow analyzers display incorrect FortiGate interface statistics
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.