Fortinet white logo
Fortinet white logo

User Guide

Creating a Packet Capture

Creating a Packet Capture

To create a new task, the selected account should have one or more sensors with the PCAP feature enabled.

To create a Packet Capture task:
  1. Go to Investigations > Packet Capture.
  2. Click Create Task. The Create New Packet Capture Task window opens.
  3. Configure the task settings.

    FieldRequiredDescription
    TitleYesThe name of the task.
    BPFYesThe BPF for traffic to match.
    Date RangeYesThe interval that the task will be active for, default = the next 24 hours.
    SensorsNoThe sensors that the task will run on, default = All Sensors.
    DescriptionNoA description of the task.

    create-task

    Note

    Sensors can only spool four (4) tasks at once, so only specify sensors that the task is relevant to. For example, if you are trying to troubleshoot one particular host in a particular data center, you probably only need to deploy the task to one sensor.

  4. Click Create.

Creating a Packet Capture

Creating a Packet Capture

To create a new task, the selected account should have one or more sensors with the PCAP feature enabled.

To create a Packet Capture task:
  1. Go to Investigations > Packet Capture.
  2. Click Create Task. The Create New Packet Capture Task window opens.
  3. Configure the task settings.

    FieldRequiredDescription
    TitleYesThe name of the task.
    BPFYesThe BPF for traffic to match.
    Date RangeYesThe interval that the task will be active for, default = the next 24 hours.
    SensorsNoThe sensors that the task will run on, default = All Sensors.
    DescriptionNoA description of the task.

    create-task

    Note

    Sensors can only spool four (4) tasks at once, so only specify sensors that the task is relevant to. For example, if you are trying to troubleshoot one particular host in a particular data center, you probably only need to deploy the task to one sensor.

  4. Click Create.