FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
abarushka
Staff
Staff
Article Id 192190
Description
This article describes how to sniff unencrypted mirrored TLS traffic without connecting PC to physical port.

Solution
Note that decrypting TLS traffic may expose sensitive information.

Configure TLS port mirroring under firewall policy for specific port.





Open SSH connection using SSH client, log the session and run in CLI:
# diagnose sniffer packet port4 (port defined under firewall policy e.g) '6 0 a'.
The above command with return unencrypted TLS traffic.

Contributors