当前位置:网站首页>FortiGate firewall filters the specified session and cleans it up
FortiGate firewall filters the specified session and cleans it up
2022-06-29 03:09:00 【Call me a little match】
This article mainly introduces how to set session filtering conditions through the command line , The corresponding filtering session details and clearing sessions are displayed .
FG600D3918701304 # diagnose sys session filter( Set filter conditions )
vd Index of virtual domain. -1 matches all.
sintf Source interface.
dintf Destination interface.
src Source IP address.
nsrc NAT'd source ip address
dst Destination IP address.
proto Protocol number.
sport Source port.
nport NAT'd source port
dport Destination port.
policy Policy ID.
expire expire
duration duration
proto-state Protocol state.
session-state1 Session state1.
session-state2 Session state2.
clear Clear session filter.
negate Inverse filter.
FG600D3918701304 # diagnose sys session filter src 10.10.10.1( Set filter condition as source address 10.10.10.1)
FG600D3918701304 # diagnose sys session list( List the sessions that match the filter criteria )
session info: proto=17 proto_state=01 duration=18 expire=161 timeout=0 flags=00000000 sockflag=00000000 sockport=7900 av_idx=0 use=6
origin-shaper=
reply-shaper=
per_ip_shaper=
ha_id=0 policy_dir=0 tunnel=/ helper=dns-udp vlan_cos=0/255
state=redir log local may_dirty nlb none
statistic(bytes/packets/allow_err): org=55/1/1 reply=71/1/1 tuples=3
tx speed(Bps/kbps): 2/0 rx speed(Bps/kbps): 3/0
orgin->sink: org pre->post, reply pre->post dev=18->54/54->18 gwy=113.102.128.1/10.10.10.1
hook=post dir=org act=snat 10.10.10.1:54831->223.5.5.5:53(113.102.131.230:54831)
hook=pre dir=reply act=dnat 223.5.5.5:53->113.102.131.230:54831(10.10.10.1:54831)
hook=post dir=reply act=noop 223.5.5.5:53->10.10.10.1:54831(0.0.0.0:0)
misc=0 policy_id=47 auth_info=0 chk_client_info=0 vd=0
serial=012ee90e tos=40/40 app_list=0 app=0 url_cat=0
dd_type=0 dd_mode=0
npu_state=0x040400
no_ofld_reason: redir-to-av non-npu-intf
session info: proto=17 proto_state=01 duration=9 expire=170 timeout=0 flags=00000000 sockflag=00000000 sockport=7900 av_idx=0 use=6
origin-shaper=
reply-shaper=
per_ip_shaper=
ha_id=0 policy_dir=0 tunnel=/ helper=dns-udp vlan_cos=0/255
state=redir log local may_dirty nlb none
statistic(bytes/packets/allow_err): org=71/1/1 reply=148/1/1 tuples=3
tx speed(Bps/kbps): 7/0 rx speed(Bps/kbps): 15/0
orgin->sink: org pre->post, reply pre->post dev=18->54/54->18 gwy=113.102.128.1/10.10.10.1
hook=post dir=org act=snat 10.10.10.1:56119->223.5.5.5:53(113.102.131.230:56119)
hook=pre dir=reply act=dnat 223.5.5.5:53->113.102.131.230:56119(10.10.10.1:56119)
hook=post dir=reply act=noop 223.5.5.5:53->10.10.10.1:56119(0.0.0.0:0)
misc=0 policy_id=47 auth_info=0 chk_client_info=0 vd=0
serial=012eedd7 tos=40/40 app_list=0 app=0 url_cat=0
dd_type=0 dd_mode=0
npu_state=0x040400
no_ofld_reason: redir-to-av non-npu-intf
......
FG600D3918701304 # diagnose sys session clear( Clear all sessions that match the filter criteria )
FG600D3918701304 # diagnose sys session list( View all sessions that match the filter criteria again )
total session 0( Session is 0)
FG600D3918701304 # diagnose sys session filter clear( Clear the set filter conditions )
边栏推荐
- Relations EMC, EMI, EMS
- SVN常用的十个命令
- Stm32l4 Series MCU ADC accurately calculates input voltage through internal reference voltage
- Delphi time to timestamp
- [linear algebra] 1.1 second and third order determinants
- Leetcode counts the number of ways to place houses
- 逆序对对数计算,顺序对对数计算——归并排序
- PWN攻防世界guess_num
- Altium Designer中从已有的PCB中导出所有元件的封装的方法
- [Algèbre linéaire] 1.1 déterminant du deuxième et du troisième ordre
猜你喜欢

Leetcode counts the number of ways to place houses

LinkedList learning

Overview of PMP project management

逆序对对数计算,顺序对对数计算——归并排序
![[together with Shangshui Shuo series] day 6-strong liver academic paper! The most detailed explanation!](/img/70/595a94ba19d29a56a4f0bb5964a199.png)
[together with Shangshui Shuo series] day 6-strong liver academic paper! The most detailed explanation!

STM32L4系列单片机ADC通过内部参考电压精确计算输入电压

matlab习题 —— 图像绘制练习

PWN beginner level0

PWN攻防世界guess_num

PMP项目管理概述
随机推荐
Merge sort
SQL training 01
信息学奥赛一本通 1361:产生数(Produce)
PMP商业分析概述
Synchronous movement state of Jerry's watch [chapter]
LinkedList learning
2022-2028 global MWIR camera industry research and trend analysis report
FPGA (VIII) RTL code IV (basic circuit design 1)
[Shangshui Shuo series] the simplest subtitle configuration
2022-2028 global sound insulation coating industry research and trend analysis report
快速排序,查询序列的第K大的数
Jerry's watch stops moving [chapter]
Démarrer le test - test d'intégration
Square root of X
How does sound amplify weak sounds
2022-2028 global bubble CPAP system industry survey and trend analysis report
[Algèbre linéaire] 1.1 déterminant du deuxième et du troisième ordre
18. ` BS object. Nom du noeud. Suivant Sibling ` get Brother Node
均贫富
allegro设置网络飞线以及网络颜色的方法