Created on
05-19-2022
11:13 PM
Edited on
06-15-2025
01:14 PM
By
Jean-Philippe_P
Description
This article describes when a user reports that the network is having slowness, intermittence, or disconnection for certain applications or general connections.
Scope
FortiGate, Network Equipment.
Possibilities:
There are several possibilities that lead to this issue. Some issues may not be on the FortiGate level itself.
| FortiGate | Network Equipment |
|
|
In some cases, the issue also happens after some changes on the network level.
Example:
It is necessary to identify any changes happening on any network equipment to focus on the specific equipment.
Solution
In any troubleshooting, the common way is to minimize any potential possibilities.
Here are some troubleshooting actions that can be done.
Troubleshoot FortiGate issue:
In this scenario, an example will be IP 10.10.10.99(User PC).
PC IP : 10.10.10.99
Gateway : 10.10.10.1 (fortigate IP)
The diagram is as follows:
Internet <<>> FortiGate 10.10.10.1 <<>> Core switch <<>> Switch <<>> AP <<>> PC 10.10.10.99.
On FortiGate:
To check the routing table run the following commands
get router info routing-table all <---- Check Firewall Routing table.
get router info routing-table details 10.10.10.99 <----- Check the Routing table for the PC.
Verify reachability between the PC IP 10.10.10.99 and the Gateway IP 10.10.10.1 by enabling the ping service for the Gateway IP (Firewall Interface).
Create 1 new policy IPV4.
Source: 10.10.10.99
Destination: ALL
Security profiles: None
NAT : Enabled
This will eliminate issues related to security profiles. Antivirus, Web filter, application control, etc. Without any changes to the network, test the application/service that is having an issue.
Apply 1 security profile at 1 time.
Example:
Run the test until the application stops working. From the result, fine-tune the respective policies accordingly.
Troubleshoot network issues:
From the PC, keep pinging 10.10.10.1 (FortiGate IP) and 8.8.8.8 and run the below test scenario.
For each scenario, test the problematic application/traffic accordingly.
Internet <<>> FortiGate 10.10.10.1 <<>> Core switch <<>> Switch <<>> AP <<>> PC 10.10.10.99.
Internet <<>> FortiGate 10.10.10.1 <<>> Core switch <<>> Switch <<>> PC 10.10.10.99.
Internet <<>> FortiGate 10.10.10.1 <<>> Core switch <<>> PC 10.10.10.99.
Internet <<>> FortiGate 10.10.10.1 <<>> PC 10.10.10.99.
Internet <<>> PC xx.xx.xx.xx.
From this test, there are some findings, and proceed with necessary troubleshooting. Call Fortinet Support to get help on the FortiGate level.
Related articles:
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.