Hi all
I have a very basic issue on Fortigate 300D series:
I am sending traffic from one port to another and have configured a policy to test that
permits almost everything (all trafic from any source and any destination).
My problem is: there is no counter increase on my policy indicating any packet sent or forwarded
There is no packet received.
I suspect my packet are badly formed but my policy should at least show dropped traffic stats, shouldn't it ?
Is there any "hidden" reason that can explain this.
Note that source and destination are directly connected (on port1 and port2), all ports are up, 300D as gateway is pingable.
Thanks for any help.
Regards.
how are you viewing status on that policy ? and have you tried the cli ?
e.g ( assuming policy-id 88 )
diag sys session filter policy 88
diag sys session list
Also use the diag debug flow to make 100% sure your hitting the policy-id that are monitoring if you still see no stats.
PCNSE
NSE
StrongSwan
Q:
which FortiOS version?
are the ports you use for testing part of a switch?
Please show us the policy in question, and which kind of traffic you are testing with.
In short, if you see no Counts, the policy is not hit at all.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1740 | |
1108 | |
752 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.