Diagnose command improvements
FortiOS 7.2.4 includes the following diagnose commands that you can use to view summary information about IPv4 and IPv6 sessions offloaded to NP7 processors:
diagnose sys npu-session list-brief [{44 | 46}]
diagnose sys npu-session list-brief6 [{66 | 64}]
The command output includes lists of sessions organized by session type and a total number of sessions for each session type. Summary information for each session includes the protocol, expiry time, source and destination addresses, and source and destination NAT addresses.
New filters have been added to the diagnose sys npu-session filter6
command to support filtering for IP addresses and ports added by source NAT for public traffic.
-
nat64_pub_ip
filter sessions based on public source IP address. -
nat64_pub_port
filter sessions based on public source port number.