IPS engine is crashing
- May 15, 2015
- 12 replies
- 44512 views
please find below network diagram to understand the issue.
we have three different subnet which are directly connected trough unmanageable D-link switches.
rules are made on the firewall itself for connecting to different subnet.
My issue is
when i tried to send large data from one subnet to another subnet (i.e using windows protocol / folder sharing transfer) ips engine is crashing all time and giving me an error saying
"IPS enter fail open mode: engines=1 socketsize=8388608 sessionact=pass
IPS exit fail open mode"
I had logged the case with fortinet technical team and they had suggested me to upgrade the firmware.(currently i m on firmware version 5.0 patch 9 ).
does this issue will reslove after upgrading the firmware or is their any alternative solution to this?
(if i will upgrade the firmware to 5.0 patch 11 will it work
does the ips version will change or remains same. i m avoiding for upgrading firmware version to 5.2 because some of the feature are not present e.g top client by bandwidth )
please let me know
