Skip to main content
serge_FTNT
Staff
Staff
December 16, 2025

Technical Tip: FortiGate system resources, number of object updated since FortiOS v7.4.10

  • December 16, 2025
  • 0 replies
  • 372 views
Description This article describes the values of FortiGate system resources, and describes the increase in the number of Firewall.address objects from v7.4.10.
Scope FortiGate.
Solution

View the 'default Maximum' in GUI-Global resources under global scope, and confirm the value with the console output of the CLI command 'get system resource-limits'.

 

The value '42048' below the column 'default Maximum' is the total sum for Firewall Addresses, which contains the following:

  • IP address (IPv4), IP address6 (IPv6).
  • IP multicast-address, IP multicast-address6.

 

The 'Override Maximum' column in the GUI's Global resources section offers an option to lower the maximum value.

 

For other values:

  • Firewall Policies: include policy+ policy6 + policy46 + policy64 + dos-policy + dos-policy6 + multicast-policy
  • Firewall Address Group: include addrgrp + addrgrp6
  • Session: include session + session6.

 

Example in the following screenshot:

IP address (IPv4) (25 used), IP address6 (IPv6) (1 used), while the 'Override Maximum' value is decreased to '15.000'.

 

KB-resource limit.png

 

The FortiGate resource maximum values can also be checked from the Maximum Values Table.

Example: on the FG900-G FortiOS v7.4.10,  compared to v7.4.9, the 'firewall.address' count increased from 20.000 up to 40.000 (see below):

 

FGT object_Firewall.adress_7.4.9 vs 7.4.10.jpg