Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
dieter
New Contributor

filter log on ssl inspection

Is there a filter in log/session view to show only ssl inspected traffic/sessions ?

3 REPLIES 3
dieter
New Contributor

anyone ?

emnoc
Esteemed Contributor III

diag sys session list would be the way to go from a CLI  and look at that policy. You can  set filters for the policy.id#

 

PCNSE 

NSE 

StrongSwan  

PCNSE NSE StrongSwan
dieter
New Contributor

Thank you, emnoc, for your suggestion. In the output of diag sys session list, what indicates wether a session was inspected/decrypted or not ? Other vendors use specific flags for that.

Not all sessions going through a specific policy will be decrypted (eg ssl inspection exemption categories).

 

And how would one identify causes for SSL inspection failures (eg unsupported ciphers)?

Labels
Top Kudoed Authors