Fortinet flow trace

broken image
broken image
broken image

addr – IP address (can either be source or destination).diag debug flow filter (option) (variable).Add relevant filters (add as many as you like).You can also see what NAT rule and routing is applied. It allows you to see if the packet is being denied for some reason or being allowed by a particular policy. The flow trace feature in the FortiGate units allows you to trace to flow of a packet through the firewall you are consoled to.

broken image