We are attempting to demo PaperCut MF; and are running into a problem with their print deploy client that pushes print queues to client computers. The server is a physical server behind a FortiGate 61F at site B, and there's another site LAN behind another FortiGate 61F, we'll call that site A. The sites are connected via point to point VPN and we can access resources, ping addresses across. PaperCut PD Firewall Ports I see the linked support article, but I don't see anywhere in the FortiGate that the traffic is actually being blocked. Thoughts/ideas? PaperCut is adamant that there's something blocking it. My endpoint protection isn't showing anything blocking this either.
Hi @dhorowitz,
You can run debug flow to see if the traffic is being dropped. Please refer to https://community.fortinet.com/t5/FortiGate/Troubleshooting-Tip-First-steps-to-troubleshoot-connecti...
Example:
di deb disable 
di deb res 
diagnose debug flow filter clear 
di deb flow filter saddr 1.1.1.1                          <<< Source IP
di deb flow filter daddr 2.2.2.2                          <<< Destination IP
diagnose debug flow show function-name enable 
di deb flow show iprope en 
diagnose debug console timestamp enable 
diagnose debug flow trace start 500 
diagnose debug enable 
Regards,
Hi Sir,
Thank you for reaching out to Fortinet support.
In order to find out how Fortigate is handling the traffic we can use sniffer and debug flow, capturing that you can study the traffic.
Please find the document below in order to run those commands and capture the logs.
Best Regards,
Piyush Mudgal
| User | Count | 
|---|---|
| 2727 | |
| 1417 | |
| 810 | |
| 738 | |
| 455 | 
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.