FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
rmetzger
Staff
Staff
Article Id 197261

Description

 

This article describes when there are many Firewall Policies for a specific interface pair, an easy way to see if a policy is actually hit by some traffic is to add the counter field in the GUI.


Scope


FortiGate, FortiOS.

Solution

 

  1. From the GUI, navigate to  Policy & Objects -> Firewall Policy.
  2. Select the 'Configure Table' option as shown in the screenshot below:

 

232323.png

 

  1. Select 'Hit Count' as well as 'Bytesand then Apply:

    444444.png

     
  2. Now verify that some packets hit this Policy will show the number of policy hits and Bytes as shown in the screenshot below:
     
 
5555555.png
 

Note: For accelerated traffic (ex. NP2 ports), only the start of the session packet will be counted, and this counter does therefore not reflect the real traffic count. For non-accelerated traffic, all packets will be counted.

Related articles:

Technical Note : Configuring a Firewall Policy which is valid only at certain days or hours by using...

Technical Tip: Information about traffic log counters for NP2 or NP4 offloaded sessions

Technical Tip: How to clear Firewall Policy counters