
NPU configuration commands (NP4, NP6, NP7) - Fortinet …
Oct 16, 2014 · This article describes some of the NPU diagnostics options for models with NP4, NP6 or NP7 network processors. NP6 also has configurable options that therefore remain after a reboot (unlike most diagnostic options).
diagnose sys session/session6 list (view offloaded NP6 sessions)
Jun 4, 2010 · Displaying NP6 offloading information for a session. The npu info line of the diagnose sys session list command includes information about the offloaded session that indicates the type of processor and whether its IPsec or regular traffic: offload=8/8 for NP6 sessions. flag 0x81 means regular traffic. flag 0x82 means IPsec traffic.
Technical Tip: Potential cause of NPU non-offloadi ... - Fortinet …
Sep 2, 2024 · According to the FortiGate 200E fast path architecture, traffic will only be offloaded if it enters and exits the FortiGate 200E on interfaces connected to the same NP6 processor since the inter-connectivity between each NPU chip is via CPU.
Configuring individual NP6 processors | FortiGate / FortiOS 7.4.3 ...
You can use the config system np6 command to configure a wide range of settings for each of the NP6 processors in your FortiGate unit including enabling session accounting and adjusting session timeouts. As well you can set anomaly checking for IPv4 and IPv6 traffic.
config system np6 | FortiGate / FortiOS 7.6.2 - Fortinet …
config system np6 Description: Configure NP6 attributes. edit <name> set fastpath [disable|enable] config fp-anomaly Description: NP6 IPv4 anomaly protection. trap-to-host forwards anomaly sessions to the CPU.
Network processors (NP6, NP6XLite, NP6Lite, and NP4)
Jun 4, 2010 · FortiASIC network processors work at the interface level to accelerate traffic by offloading traffic from the main CPU. Current models contain NP6, NP6XLite, and NP6Lite network processors. Older FortiGate models include NP1 network processors (also known as FortiAccel, or FA2), NP2, NP4, and NP4Lite network processors.
Ensuring IPSec traffic is offloaded for improved throughput
Feb 16, 2025 · The NPU flag indicates whether the traffic processed by the NPU is bi-directional. The flag can change based on the type of traffic being processed and the current network conditions. The VPN traffic can be affected if there is a high CPU issue stemming on one of the core CPU 0 cores for example.
CAPWAP Offloading (NP6 only) - Fortinet GURU
Jan 24, 2020 · CAPWAP Offloading (NP6 only) Simple Network Topology. NP6 offloading over CAPWAP traffic is supported by all the FortiGate high-level models and most middle-level models. NP6 offloading over CAPWAP configuration. NP6 session fast path requirements: config system npu set capwap-offload enable end. Enable the capwap-offload option in system npu
system npu - Fortinet
Configure Network Processor (NP) options for FortiGates with NP6 and NP4 network processors. Note that command availability, especially for config system npu, depends on the model used. For the purposes of documentation, the syntax provided below is from a FortiGate 1500D.
Using the diagnose sys session/session6 list command
Sep 7, 2016 · offload=8/8 for NP6 sessions. flag 0x81 means regular traffic. flag 0x82 means IPsec traffic. Example offloaded IPv4 NP6 session. The following session output by the diagnose sys session list command shows an offloaded session.