FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
johnathan
Staff
Staff
Article Id 377172
Description This article describes how to specify a source IP while doing an iPerf test from the FortiGate.
Scope FortiGate.
Solution

When doing an iPerf test from the FortiGate, by default it will use the IP of the egress interface as the source IP.

In some cases (especially when over a VPN tunnel doing BGP), this source IP will not be routable and the iPerf test will not connect.

Here is an example of the command in the default state:

 

fail_iperf.PNG
fail_sniffer.PNG

 

It uses the default address of the configured interface, in this case, port9:

 

port9-1.PNG

To specify a source IP, use the '-B' flag when running the iPerf command. For example:


diag traffictest run -c x.x.x.x -B y.y.y.y

 

good_iperf.PNG

 

It is also possible to see this source IP in the sniffer:

 

good_sniff.PNG

 

Note:
Refer to the iPerf CLI Reference for more granular controls over the iPerf test.