Thursday, January 7, 2016

FortiOS diag debug flow filters

Here's some very strange behavior with the diag debug flow. I was playing around look at  incorrect network numbers and want to see if I could try some  weird addr filters with the diag debug flow

Check this out;

You can't specify a loopback   net127 but you can specify a improper  ipv4 address and a broadcast address.

So how about ipv6? Will let's find out.

Ken Felix
NSE ( network security expert) and Route/Switching Engineer
kfelix  -----a----t---- socpuppets ---dot---com

     ^      ^
=(  @  @ )=
        /  \

No comments:

Post a Comment