FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
VinayHM
Staff
Staff
Article Id 399616
Description This article describes why the interface cannot be added to the policy.
Scope FortiGate.
Solution

If the interface is not part of a zone, the policy will not show an error.

If the interface belongs to a zone and is added as a source or destination in the policy, the FortiGate will display the following error.

 

Node_check_object fail! for name LAN.

Value parse error before 'LAN'.

 

In this case, the VLAN 'LAN' interface is part of the zone 'LAN-Zone'.

 

kb.PNG

 

As a result, when attempting to add the interface as the outgoing interface, an error occurs.

 

image (63).png


To resolve this issue, 

  • Create the policy using the zone. In this example, with zone 'LAN-Zone'.

 

kb1.PNG

 

  • Remove the interface from the zone, and then create the policy with interface 'LAN'.

 

kb3.PNG

 

kb3.PNG

 

For any issue related to the FortiGate GUI, Fortinet support tool output can be collected to get more information.


Related article
:

Technical Tip: Fortinet Support Tool, Google Chrome Extension for troubleshooting GUI issues