To validate that email is being handle and to get a status/ideal of traffic entering a FortiMail unit, you have a few options available at your disposal.
1st you can review the (WebGUI ) logs > events these will populate as events occur or as mail is being rejected
2nd option, run a packet sniffer from the cli diag sniffer packet any " tcp port 25"
3rd options, use the cli command diag debug application mailfilterd
4th run the miglogd debug from the cli diag debug application miglogd
NSE ( network security expert) and Route/Switching Engineer
kfelix -----a----t---- socpuppets ---dot---com
=( @ @ )=