Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
jilljrm
New Contributor

Basic source-destination report

Just replaced an aging 100B OS 4.0 MR3 with 200D OS 5.0.9. Some reports are helpful, bu a basic source- destination traffic report showing allowed & denied traffic, for server monitoring, seems to be missing. No time to learn the tricks of POSTGRESQL right now. Has anyone put this together? thanks, Jill
1 REPLY 1
hzhao_FTNT
Staff
Staff

Please try below dataset: select coalesce(nullifna(`user`), ipstr(`srcip`)) as user_src, coalesce(nullifna(root_domain(hostname)), ipstr(`dstip`)) as destination, sum(coalesce(sentbyte, 0)+coalesce(rcvdbyte, 0)) as bandwidth, utmaction as " Security Action" from $log where $filter and logid_to_int(logid) not in (4, 7, 14) and utmaction in (' passthrough' , ' blocked' ) group by user_src, destination, utmaction having sum(coalesce(sentbyte, 0)+coalesce(rcvdbyte, 0))>0 order by bandwidth desc
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors