eG Monitoring
 

Measures reported by FgFnProxyTest

The FortiGate firewall can explicitly block specific traffic generated through various proxy protocols such as HTTP, HTTPS, FTP etc. Often administrators of large environments may want to figure out the protocol that is transferring the maximum number of requests through the firewall to the target environment. This analysis may help the administrators to figure out the protocol and block requests from that protocol. The FgFnProxyTest test helps administrators in this regard!

This test auto-discovers the proxy protocols that are communicating with the target environment though the firewall and for each protocol, reports the memory utilization and the number of requests processed by the protocol. In addition, this test throws light on the maximum connections that can be handled by each protocol and the percentage of connections that were utilized by the protocol. This way, administrators can figure out the protocol that is responsible for the abnormal traffic through the firewall.

Outputs of the test : One set of results for each proxy protocol server connecting to the target firewall being monitored.

The measures made by this test are as follows:

Measurement Description Measurement Unit Interpretation
Proxy_mem_usage Indicates the percentage of memory utilized by this proxy server. Percent Comparing the value of this measure across the protocol servers helps administrators to identify the proxy protocol server that is utilizing the maximum amount of memory.
Proxy_req_processed Indicates the number of requests processed by this proxy server. Number  
Proxy_curr_conn Indicates the number of proxy connections created by this proxy server. Number  
Proxy_max_conn Indicates the maximum number of connections that can be supported by this proxy server. Number  
Proxy_conn_usage Indicates the percentage of connections that were utilized by this proxy server. Percent