Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
rsfernandes
New Contributor

How to see VPN traffic

Hello Guys,    Do you have a suggestion how to see the VPN traffic, not just the communication between borders but inside of this VPN ?   Many Thanks
3 REPLIES 3
rwpatterson
Valued Contributor III

Please, open a new thread. Bringing a dead post from May 2008 back from the grave isn't going to buy you any useful information. Post has been split by FTNT Admin.

Bob - self proclaimed posting junkie!
See my Fortigate related scripts at: http://fortigate.camerabob.com

Bob - self proclaimed posting junkie!See my Fortigate related scripts at: http://fortigate.camerabob.com
ede_pfau

AFAIK decrypting encrypted traffic is not feasable with onboard tools in FortiOS. But you can sniff the traffic before it enters the tunnel, or after it leaves it.

That's the whole point in IPsec - confidentiality!


Ede

"Kernel panic: Aiee, killing interrupt handler!"
Ede"Kernel panic: Aiee, killing interrupt handler!"
lorenzhope
New Contributor

I think you can use the cli with the following command:

diag sniffer packet <interface_name> "any kind of filter (per example: host 192.168.1.1 and icmp)"

Labels
Top Kudoed Authors