FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
awasfi_FTNT
Staff
Staff
Article Id 192604

Description

 
This article shows the 'network-visibility' functions that include Destination and Source Country/Region, country flag, and destination hostnames to appear in forward traffic logs.
 
Scope
 
FortiGate.


Solution

 

The 'network-visibility' functions are enabled by default:


config system network-visibility

set destination-visibility enable

set source-location enable

set destination-hostname-visibility enable

set hostname-ttl 86400

set hostname-limit 5000

set destination-location enable

end

 

Below are the details of each function:


• 'destination-visibility'

 

     Enable destination visibility options (destination-location/ destination-hostname-visibility)

 

'destination-hostname-visibility'

Will display hostnames for links embedded in the visited web page.  Host name will show under forward traffic logs in the "Destination" field along with the IP address.

Enable 'Resolve hostnames' under Log & Report -> Log Settings to show the hostname's details.

The following screenshot illustrates the 'destination-hostname-visibility' function:


01.png


• 'destination-location'

Enable 'D
estination Country/Region' field and destination country "flag" in forward traffic logs.

The following screenshot illustrates the 'destination-location' function:

02.png


'source-location'

Enable to show 'Source Country/Region' in the logs (the 'reserved' flag will be displayed for internal source).

The following screenshot illustrates the 'source-location' function:

03.png

 

Important note:

The 'destination-hostname-visibility' requires DNSHelper enabled. If the Helper is removed, this particular function will not work.