Skip to Content

How to capture Bidirectional traffic using NP7 sniffer

The article demonstrates one way to use a filter on the NP7.

Scope

FortiGate.

Solution

In the example below, the bidirectional traffic is captured on the interface lag1.55 between the source 172.20.6.1 and 10.0.165.5:

NP7 Sniffer:

diagnose npu sniffer filter selector 0
diagnose npu sniffer filter intf lag1.55
diagnose npu sniffer filter dir both
diagnose npu sniffer filter dir 2
diagnose npu sniffer filter protocol 6
diagnose npu sniffer filter srcip 172.20.6.1
diagnose npu sniffer filter dstip 10.0.165.5

diagnose npu sniffer filter selector 1
diagnose npu sniffer filter intf lag1.55
diagnose npu sniffer filter dir both
diagnose npu sniffer filter dir 2
diagnose npu sniffer filter protocol 6
diagnose npu sniffer filter dstip 172.20.6.1
diagnose npu sniffer filter srcip 10.0.165.5
diagnose npu sniffer start
diagnose sniffer packet npudbg