Skip to main content
kjay
Staff
Staff
September 17, 2025

Troubleshooting Tip: CIDR Filter Not Working in Address Object Table on FortiOS v7.4.x

  • September 17, 2025
  • 0 replies
  • 528 views
Description This article describes an issue where the Address object table on FortiGate devices cannot be filtered using CIDR notation (for example, /24) after upgrading to v7.4.x.
Scope

FortiGate v7.4 and v7.6.0-7.6.3.

Solution

The address object table supports only simple string-based filters and lacks IP logic-based filters like contains or overlaps, causing searches with CIDR notation (for example, 1.1.1.0/24) to return inaccurate results.

 

Test Environment.

Tested on these versions:

  • v7.2.8.

  • v7.4.8.

  • v7.6.4.

 

Reproduction Steps.

  1. Go to Policy & Objects -> Addresses.

  2. Create these address objects (IP Range/Subnet):

    • 1.1.1.0/24.

    • 1.1.1.1/32.

    • 1.1.1.2/32.
    • 1.1.1.3/32.
  3. In the search bar, type 1.1.1.0/24.

 

Results.

  • v7.2.8: Shows matching results.
                                                   

728.jpg

 

  • v7.4.8: non-exact matches (issue occurs).
                                                           
    748.jpg

 

  • v7.6.4: Shows matching results.
                                                                           
    764.jpg

 


This behavior occurs only in FortiOS v7.4.x and v7.6.0 through v7.6.3. It has been resolved in:

  • v7.6.4 (available to download from the Fortinet support portal).
  • v8.0.0 (scheduled to be released in March 2026).


These timelines for firmware release are estimates and may be subject to change.