FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
JNDias
Staff
Staff
Article Id 252680

Description

 

This article explains the differences in values returned by the GUI and CLI debugging processes in FortiGate devices. The corresponding CLI command is as follows:

 

# diagnose test application dnsproxy 2

 

Scope

 

FortiOS 7.2, any supported version of FortiGate.

 

Solution

 

See the diagram below for clarification. The numbered points of interest are as follows:

 

1) The last time the DNS was tested in the local FortiGate (in the date/hour format).

2) The DNS latency from the last test. (As referred to in points 1 and 4.)

3) The CLI equivalent of point 2, 'Latency'. Note: a latency of '1' in dnsproxy represents a latency of 10 milliseconds.

4) The CLI equivalent of point 1, the last time the DNS was tested or the value was updated. The measurement is in milliseconds.

 

Untitled picture.png

 

Related articles:

- Technical Tip: DNS resolution of hostname to IP.

- Technical Note: FortiGate Troubleshooting DNS commands.

- DNS rating error occurs (no available FortiGuard SDNS servers).

Contributors