Thursday, July 16, 2020

FortiOS CLI 命令1

获取所有静态路由
get router info routing-table static
配合使用grep过滤出路由
get router info routing-table static | grep xxx.xxx.xxx.xxx

编辑静态路由
config route static
edit xx


按需求过滤出session
diag sys session filter dst xxx.xxx.xxx.xxx
diag sys session filter proto 17 //proto number 17 为UDP

diag sys session filter proto 6 //proto number 6 为TCP

diag sys session filter dport 5000
diag sys session filter negate dport  //端口不为5000

diag sys session filter //查看当前过滤规则

diag sys session list //列出所有过滤出来的session

diag sys session clear //结束所有过滤出来的session



参考:





No comments:

Post a Comment

华为交换机option43和60实例

AC: Aruba 651- 10.77.25.1 AP: Aruba 105 - 172.17.2.0/24 SW: 华为S5720  ip pool pool2  gateway-list 172.17.2.1  network 172.17.2.0 mask 255.255...