Fortinet black logo

Handbook

GTP Monitor Mode

6.0.0
Copy Link
Copy Doc ID 4afb0436-a998-11e9-81a4-00505692583a:838618
Download PDF

GTP Monitor Mode

The monitor-mode setting is part of the GTP profile. The setting shows on all GTP profiles and works for all GTP versions.

When this setting is enabled, if a GTP packet is to be dropped due to a GTP deny case such as:

  • GTP_DENY
  • GTP_RATE_LIMIT
  • GTP_STATE_INVALID
  • GTP_TUNNEL_LIMIT

instead of being dropped, it will be forwarded and logged with the original deny log message and a "-monitor" suffix (e.g., state-invalid-monitor).

This setting is found in the CLI.

config firewall gtp

edit profile_name

...

set monitor-mode {disable*|enable}

...

end

end

GTP Monitor Mode

The monitor-mode setting is part of the GTP profile. The setting shows on all GTP profiles and works for all GTP versions.

When this setting is enabled, if a GTP packet is to be dropped due to a GTP deny case such as:

  • GTP_DENY
  • GTP_RATE_LIMIT
  • GTP_STATE_INVALID
  • GTP_TUNNEL_LIMIT

instead of being dropped, it will be forwarded and logged with the original deny log message and a "-monitor" suffix (e.g., state-invalid-monitor).

This setting is found in the CLI.

config firewall gtp

edit profile_name

...

set monitor-mode {disable*|enable}

...

end

end