Bob - self proclaimed posting junkie!
See my Fortigate related scripts at: http://fortigate.camerabob.com
Have you dealt with file sharing and large downloads lately?Yes What I' m saying on ingress, if some one pings floods your pipe or udp or anything non-connection type of protocol, no matter how much ingress shaping you do, is not going to help you as far as bandwidth over that link. You would need to squash that by the upwind devices, and it' s best done at the egress port before it hits any other layer3 device. Traffic shaping on ingress and policing ( which are 2 different things btw ) have to be thought out and looked at very closely, to see what your trying to accomplish and the desired goal & effect. On egress is simpler and more effective to apply for bandwidth control, QoS assurance, and policing of one' s traffic flows. And to prevent link bandwidth starvation.
PCNSE
NSE
StrongSwan
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1742 | |
1114 | |
760 | |
447 | |
241 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.