Hello,
I was working with a FortiNet engineer a while back and while he was bouncing around the GUI he showed me a graph that showed how many packets were being scanned with DPI (versus total packets).
I have never been able to find my way back to that graph.
Does anyone know how to display any kind of t DPI statistics?
Thanks.
Bryan Hunt
Was this on the FortiGate or on FortiAnalyzer?
Graham,
I *believe* that it was on the FortiGate itself. But it was a while back, so not positive.
The "end in mind" is to just prove to myself (and the customer) that DPI is actually opening encrypted packets and inspecting payloads. Has to be a way to do that, right?
Thanks.
Bryan Hunt
To be honest I'm not sure of any graphs that show packets scanned with DPI vs not. Perhaps some other members know the answer.
But if youre just trying to show DPI is working you can check other places as well. On the client browser you can verify the certificate that is used to protect the connection. It should show your internal cert if DPI is active.
Thanks Graham, I'll give that a try.
I'm starting to believe that it might have been on a FortiCloud Summary Report. Top Application Categories, unscanned packets.
Ah yes that makes a lot more sense. Pretty much anything can be turned into a report. Glad you sorted it out.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1740 | |
1108 | |
752 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.