Created on
09-04-2023
09:50 PM
Edited on
11-24-2024
05:38 AM
By
Jean-Philippe_P
| Description |
This article describes that there are a few reasons why even after there is a firewall policy, logs are not matching. It could be device IP banned, threat score high or SNAT configured with one-to-one NAT. |
| Scope |
FortiGate. |
| Solution |
First, verify which traffic is having an issue, Based on that check the matching policy and verify the below information to confirm what is the actual issue.
Troubleshooting Tip: 'Deny: policy violation' in logs, IP denied in an allow policy
Troubleshooting Tip: Threat 131072 is seen in logs when traffic is denied by a firewall policy
Technical Tip: FortiGate - Deny: policy violation logs with authentication FSSO and LDAP
Technical Tip: Configuring Hairpin NAT (VIP)
In this scenario, it is necessary to change SNAT from one-to-one NAT to overload or another option: |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2026 Fortinet, Inc. All Rights Reserved.