Hello,
I have a fortigate 100D.
Can you tell me the difference between forward traffic and local traffic in Log & Report section?
Solved! Go to Solution.
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Hi Mlourenco!
Local traffic is traffic destined for any IP on the FortiGate itself -> management IPs, VIPs, secondary IPs etc.
Any traffic NOT destined for an IP on the FortiGate is considered forward traffic.
Regarding local traffic being forwarded:
This can happen in cases of VIP and similar setups. We have traffic destined for an IP associated with the FortiGate itself (the external IP of the VIP), and the FortiGate will do DNAT to the internal IP and then forward the traffic to the internal IP. It will still be considered local traffic, because the initial traffic (prior to DNAT) is addressed to the FortiGate directly.
Does this clear up the confusion?
Local traffic is traffic directed to the Fortigate itself on one of its management interfaces. Forward traffic is that traffic permitted or denied by a firewall policy. (and "forwarded" to its destination)
-rd 2x 200D Clusters 1x 100D
1x 60D FortiOS 5.2 FortiAP 221C FAZ 200D
But, local traffic can be forwarded also? What's the diference between both?
Hi Mlourenco!
Local traffic is traffic destined for any IP on the FortiGate itself -> management IPs, VIPs, secondary IPs etc.
Any traffic NOT destined for an IP on the FortiGate is considered forward traffic.
Regarding local traffic being forwarded:
This can happen in cases of VIP and similar setups. We have traffic destined for an IP associated with the FortiGate itself (the external IP of the VIP), and the FortiGate will do DNAT to the internal IP and then forward the traffic to the internal IP. It will still be considered local traffic, because the initial traffic (prior to DNAT) is addressed to the FortiGate directly.
Does this clear up the confusion?
Local traffic includes traffic destined for any IP on the FortiGate itself (such as management traffic ) or traffic initialized from Fortigate itself (such as traffic to Fortiguard)
forward traffic is the traffic through Fortigate
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1705 | |
1093 | |
752 | |
446 | |
230 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.