Skip to main content
cp3
New Member
February 22, 2022
Solved

External DNS Server Unreachable

  • February 22, 2022
  • 8 replies
  • 32918 views

NULL

Best answer by jhussain_FTNT

Please note that DNS query latency is based on when FGT system DNS sends a query, we will record the time sent. And when a query response is received, the time received will also be recorded. We calculated the latency (weighted 3:7) of the server based on these value.If there is no DNS response packet received or failed, Fortigate shows the status unreachable. Kindly check whether the Fortigate is receiving the DNS response packet from the DNS server. Also the latency value is not updated,if Fortigate do not query the server since there are no transaction of packets.

8 replies

cp3
cp3Author
New Member
February 22, 2022

...

jhussain_FTNT
Staff
Staff
February 22, 2022

Please note that DNS query latency is based on when FGT system DNS sends a query, we will record the time sent. And when a query response is received, the time received will also be recorded. We calculated the latency (weighted 3:7) of the server based on these value.If there is no DNS response packet received or failed, Fortigate shows the status unreachable. Kindly check whether the Fortigate is receiving the DNS response packet from the DNS server. Also the latency value is not updated,if Fortigate do not query the server since there are no transaction of packets.

cp3
cp3Author
New Member
February 22, 2022

..........

jhussain_FTNT
Staff
Staff
February 22, 2022

You need to allow port 53 also in the incoming allow list to reach back to Fortigate.

Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
Fortinet Flag the Hack. Wednesday, August 26, 9:00 AM - 5:00 PM ET, COSM, Atlanta, GA.
Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!