Description | This article explains how port mirroring can be configured for NP7 platforms on ISF. |
Scope | NP7 FortiGate. |
Solution |
It is possible to run a sniffer on the FortiGate to capture packets as explained here: Troubleshooting Tip: Using the FortiOS built-in packet sniffer for capturing packets.
On NP7 platforms, it is possible to run a sniffer for packets offloaded to NP:
In certain cases, it may be necessary to capture packets on the Integrated Switch Fabric of these platforms to identify any packet drops that occur.
This is possible on the FortiGate, and this would be similar to capturing packets on a hardware switch, where we would have to configure port mirroring.
diagnose npu np7 port-list
In a multi-VDOM environment, this command must be run on the Global VDOM.
Example output:
Note: The SW_port_name varies on each FortiGate device and therefore needs to be identified individually.
config global
With the above command, all the traffic on port10 will be mirrored on port2 and hence can be collected similarly as it is done on a port mirroring on a switch.
config global |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.