Skip to main content
gsharma
Staff
Staff
July 17, 2026

Technical Tip: Troubleshooting steps if FortiWeb cannot connect to One Click GSLB

  • July 17, 2026
  • 0 replies
  • 27 views

Description

This article describes the troubleshooting steps needed to take if the FortiGSLB cloud status is showing as down on the FortiWeb Fabric connector.

Scope

FortiAppSec Cloud, FortiWeb.

Solution

FortiWeb can integrate with FortiGSLB using a service called One Click GSLB.

This can be found under FortiWeb > Security Fabric > Fabric connector under other Fortinet products.


38f80a79.png


This cloud status needs to show Green in order to show that it's connected to the GSLB cloud. If showing Red mean the cloud status is down.

Even though the service is set to enable, the cloud reachability is down. 


2b3d746e.png


To check this further, follow the troubleshooting steps:

  1. Try to ping the Cloud server URL and see if the FQDN can resolve to an IP address:

    execute ping 1clickfwb.fortigslb.com
    unknown address type; only IPv4 is currently supported


If a similar message is there, it means the FQDN is not able to resolve to an IP. Then proceed to open the CLI and take the debug:

diagnose debug application ocgsd 7
diagnose debug timestamp enable
diagnose debug enable 

2026-07-16 18:15:02](update_vs_status : 1399)now_time:1784250902, license_time:20270508 [2026-07-16 18:15:03](update_vs_status : 1425)policy name:Kali, fqdn:g.mygslb.test.me.

[2026-07-16 18:15:03](update_vs_status : 1475)vip name:LinuxServer, ip:10.1.1.1

[2026-07-16 18:15:03](add_vs_status_to_object : 1353)vs status object_str:{ "vdom_name": "root", "name_key": "Kali", "ip": "10.1.1.1", "status": 1, "active_session": 0, "byte_processed": 0 } 

[2026-07-16 18:15:03](curl_post : 180)curl_post: POST https://1clickfwb.fortigslb.com/api/v1.0/one-click-glb-fwb/updatestatus failed: Could not resolve hostname <<<<<<


  1. Try to change the DNS server IP on the FortiWeb. If that is an internal IP, then change it to Global DNS and try to ping the cloud server IP again.

541d0e8c.png


  1. Post changing the DNS server IP, and Ping the cloud server FQDN to verify if the FQDN is able to resolve.

FortiWeb # execute ping 1clickfwb.fortigslb.com
PING fortigslb-oneclick-nlb-7654-836794db46510340.elb.us-west-2.amaz (52.43.24.46): 56 data bytes
^C
--- fortigslb-oneclick-nlb-7654-836794db46510340.elb.us-west-2.amaz ping statistics ---
3 packets transmitted, 0 packets received, 100% packet loss


  1. FQDN resolution could be the main reason for this issue. After that issue the cloud server status will come up.

8d5c121d.png


Note: If the above steps do not resolve the issue, then reach out to Support with the debugs collected as mentioned.

Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Fortinet Flag the Hack. Wednesday, August 26, 9:00 AM - 5:00 PM ET, COSM, Atlanta, GA.
Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!