Fortinet black logo

Administration Guide

Sessions

Sessions

FortiView's Sessions menu provides information about each session that FortiWeb monitors, including the following:

  • Server policies
  • Requests
  • Established connection times
  • Destination IP addresses
  • Source ports
  • Destination ports

All of this data helps you better understand users connecting to your network and how policies in your FortiWeb configuration are monitoring them. You can even end individual sessions or groups of sessions as needed.

Sources

Go to FortiView > Sessions > Sources.

From this window, you can see information about every source IP address that FortiWeb is currently monitoring, including the total number of sessions, the total number of requests, and bytes sent/received of each source:

Use these settings along the top of the window to view source information:

Click the Refresh icon to refresh information about each source.

Click the Add Filter icon to filter source information by session, policy, and destination. From here, you can either enter the parameter that you want to filter, or select the parameter from the menu.

Alternatively, you can double-click the source to filter session information by session, policy, and destination.

When you drill down into a source, you can view its Policies, Destinations, and Sessions. For example, the below image shows the Policies tab. You can drill down into server-policy5 to view each source IP address that the policy is monitoring:

When you drill down into server-policy5, you will see this information for each source IP address:

Similarly, when you drill down into the Destinations tab, you will see session information for the selected destination IP address(es).

Policies

Go to FortiView > Sessions > Policies.

From this window, you can see information about every server policy, including the total number of sessions, the total number of requests, and bytes sent/received of each source:

Use these settings along the top of the window to view session information:

Click the Refresh icon to refresh information about each policy.

Click the Add Filter icon to filter policy information by source and destination. From here, you can either enter the parameter that you want to filter, or select the parameter from the menu.

Alternatively, you can double-click the policy to filter policy information by session, source, and destination.

If you drill down into a policy, you can view its Sources, Destinations, and Sessions. For example, the below image shows the Destinations tab. You can drill down into any of the destination IP addresses:

When you drill down into the 1.1.1.1 destination, you will see this information about each source IP address going to the selected destination under the selected policy:

Similarly, when you drill down into the Sources tab, you will see session information for the selected source IP address(es) for that server policy.

Ending sessions

You can end sessions in FortiView's Sessions menu under either the Sources or Policies submenu. Below is an example that describes how to end sessions under the Sources submenu.

Go to FortiView > Sessions > Sources.

Drill down into a source. Alternatively, click the Add Filter icon and select a source.

Select the Destinations tab.

note icon

This example shows you how to end sessions going to a specific destination IP address. You can end sessions from any tab, and the process is essentially the same. To end sessions, you simply have to select a unique session or group of sessions. For example, if you select the Policies tab for a specific source under FortiView > Sessions > Sources, you can end sessions for a specific policy there.

Similarly, if you go to FortiView > Sessions > Policies and select the Destinations tab under a selected policy, you can end unique sessions or groups of sessions for a specific policy going to a specific destination IP address as well.

Drill down into a destination. Alternatively, click the Add Filter icon and select a destination.

From the list of sources in that destination, select the source(s) that you want to end and right-click to open this menu:

End Session(s) End the selected session(s)
End All Sessions End all of the sessions displayed. For example, if you are viewing all of the sessions for a source, all sessions from that source will be ended. Similarly, if you are viewing all of the sessions for a destination IP address, all sessions going to that destination will be ended.

Note: You can select multiple sessions by shift-clicking or control-clicking sessions.

See also

Sessions

FortiView's Sessions menu provides information about each session that FortiWeb monitors, including the following:

  • Server policies
  • Requests
  • Established connection times
  • Destination IP addresses
  • Source ports
  • Destination ports

All of this data helps you better understand users connecting to your network and how policies in your FortiWeb configuration are monitoring them. You can even end individual sessions or groups of sessions as needed.

Sources

Go to FortiView > Sessions > Sources.

From this window, you can see information about every source IP address that FortiWeb is currently monitoring, including the total number of sessions, the total number of requests, and bytes sent/received of each source:

Use these settings along the top of the window to view source information:

Click the Refresh icon to refresh information about each source.

Click the Add Filter icon to filter source information by session, policy, and destination. From here, you can either enter the parameter that you want to filter, or select the parameter from the menu.

Alternatively, you can double-click the source to filter session information by session, policy, and destination.

When you drill down into a source, you can view its Policies, Destinations, and Sessions. For example, the below image shows the Policies tab. You can drill down into server-policy5 to view each source IP address that the policy is monitoring:

When you drill down into server-policy5, you will see this information for each source IP address:

Similarly, when you drill down into the Destinations tab, you will see session information for the selected destination IP address(es).

Policies

Go to FortiView > Sessions > Policies.

From this window, you can see information about every server policy, including the total number of sessions, the total number of requests, and bytes sent/received of each source:

Use these settings along the top of the window to view session information:

Click the Refresh icon to refresh information about each policy.

Click the Add Filter icon to filter policy information by source and destination. From here, you can either enter the parameter that you want to filter, or select the parameter from the menu.

Alternatively, you can double-click the policy to filter policy information by session, source, and destination.

If you drill down into a policy, you can view its Sources, Destinations, and Sessions. For example, the below image shows the Destinations tab. You can drill down into any of the destination IP addresses:

When you drill down into the 1.1.1.1 destination, you will see this information about each source IP address going to the selected destination under the selected policy:

Similarly, when you drill down into the Sources tab, you will see session information for the selected source IP address(es) for that server policy.

Ending sessions

You can end sessions in FortiView's Sessions menu under either the Sources or Policies submenu. Below is an example that describes how to end sessions under the Sources submenu.

Go to FortiView > Sessions > Sources.

Drill down into a source. Alternatively, click the Add Filter icon and select a source.

Select the Destinations tab.

note icon

This example shows you how to end sessions going to a specific destination IP address. You can end sessions from any tab, and the process is essentially the same. To end sessions, you simply have to select a unique session or group of sessions. For example, if you select the Policies tab for a specific source under FortiView > Sessions > Sources, you can end sessions for a specific policy there.

Similarly, if you go to FortiView > Sessions > Policies and select the Destinations tab under a selected policy, you can end unique sessions or groups of sessions for a specific policy going to a specific destination IP address as well.

Drill down into a destination. Alternatively, click the Add Filter icon and select a destination.

From the list of sources in that destination, select the source(s) that you want to end and right-click to open this menu:

End Session(s) End the selected session(s)
End All Sessions End all of the sessions displayed. For example, if you are viewing all of the sessions for a source, all sessions from that source will be ended. Similarly, if you are viewing all of the sessions for a destination IP address, all sessions going to that destination will be ended.

Note: You can select multiple sessions by shift-clicking or control-clicking sessions.

See also