Fortigate Traffic Capture

The below can be used to verify pings are going out the correct policy routes on a Fortigate

diagnose sniffer packet any 'dst host 8.8.8.8 and icmp or dst host 8.8.4.4 and icmp'

References

This is a personal website. Unless otherwise stated, the content and opinions expressed here are my own and not those of my employer.