Skip to main content
Lucascat
New Member
September 14, 2019
Solved

System link-monitor is not working after 5.6.11 upgrade

  • September 14, 2019
  • 4 replies
  • 26413 views

System link-monitor is not working as expected. When the gateway ping comes back up, the routes remains down anyway. I have to disable and re-enable link-monitor for that interface.

I have an open case with Fortinet

    Best answer by sw2090

    I found a forum post referring the very same bug in v.5.2. So looks like if Fortinet brought back an old old bug in 5.6.11 :\

    As back in 5.2 executig "exec router restart" temporarily fixes it until the next WAN outage.

    4 replies

    PhilipAlexander
    New Member
    September 17, 2019

    Hi,

     

    I noticed the same problem on multiple firewalls after upgrading to 5.6.11.

     

    We had an open case with Fortinet where they recommended to upgrade to 6.0.6 or 6.2.1 after they confirmed the problem wasn't affecting those FortiOS versions.

    Lucascat
    LucascatAuthor
    New Member
    September 18, 2019

    Upgraded to 6.0.6, as suggested, without problem. I confirm that now link-monitor is working.

    st3fan
    New Member
    September 26, 2019

    Hi Lucas

     

    We are experiencing the same issue. I have received the following disappointing reply from Fortinet Support.

     

    "I have checked our internal engineering tickets and indeed found this: 0576646 - dead health-check cannot recover until restart daemon lnkmtd. As there is no further 5.6 version planned after 5.6.11, the issue will not be fixed in 5.6 anymore. I feel sorry to say so, but to overcome the issue you would need to upgrade to 6.0.6 or 6.2.1."

     

    I find this hard to believe. End of Engineering Support for FortiOS 5.6.11 only ends in March 2020. Have you had more luck with Support?

     

    Thanks,

    Stefan

    Lucascat
    LucascatAuthor
    New Member
    September 26, 2019

    No, but I have upgraded to 6.0.6 without any issue

    st3fan
    New Member
    September 26, 2019

    Ok, thanks for letting me know. Will give it a try.

    sw2090
    SuperUser
    SuperUser
    October 24, 2019

    Maybe it could be some kind of workaround to disable the autmatic routing update in the health check settings. Then the routes would not go down on case of outage. The question on this would then be what happens to sdwan traffic then?

    sw2090
    SuperUser
    sw2090Answer
    SuperUser
    October 28, 2019

    I found a forum post referring the very same bug in v.5.2. So looks like if Fortinet brought back an old old bug in 5.6.11 :\

    As back in 5.2 executig "exec router restart" temporarily fixes it until the next WAN outage.

    tioeudes
    New Member
    October 30, 2019

    Same thing here. It happened before when upgraded from 5.2 to 5.4.

    As usual, nothing on the release notes.