Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
mletendre
New Contributor

Mirror SSL VPN traffic to another Port

We have a device in line that brings down Threat intelligence from CTI providers and monitor or blocks based on the policies and rules, however one area where we do not currently have viability is when a SSLVPN user comes into the firewall to monitor what CTI rules they may be triggering. We can see the events on the WAN side, however we are not correlating them to the IP and user due to NAT.

 

Long story short, is there a way to send all SSLVPN traffic to a mirrored port on a Fortigate 100D ?  From this port we can tap into the device and gather the information to be processed and sent to Splunk for reporting.

0 REPLIES 0
Labels
Top Kudoed Authors