Hi, does anyone know what does Sessions mean in traffic log table?
Found this explaination online:
"A session is a communication channel between two devices or applications across the network. Sessions allow FortiOS to inspect and act on a sequential group of packets in a session all at once instead of inspecting each packet individually."
But my boss doesn't accept this answer as it is not from a fortinet tech.
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Hi @weiyangs
Please follow the doc for more details - https://docs.fortinet.com/document/fortigate/6.2.15/cookbook/562859/using-a-session-table
Best regards,
Erlin
If you have found a solution, please like and accept it to make it easily accessible to others.
Hello
Whenever you browse or initiate connection packet goes to different stages.
>> Slow path - Packet get inspected in this stage and after check various things such as destination NAT firewall policy and routing
If these things match it creates session. Now if packet comes again it checks the 6 tuples with session table if it matches it direclty goes to fast path.
By this firewall don't have to do all the checkes again and again
For better understanding you can refer packet flow of fortigate.
Thanks & Reagrds
Mayank Sharma
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1732 | |
1106 | |
752 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.