Created on
10-03-2024
09:43 PM
Edited on
07-03-2025
12:22 AM
By
fdsantos
Description | This article describes how link failure causes HA failover failure. |
Scope | FortiGate. |
Solution |
For example, HA failover has to override disabled under the HA setting, monitored interfaces are port1 and port2 as shown below:
config system ha set override disable set monitor port1 port2 end
HA failover can be triggered in the primary unit by using the command 'diagnose sys ha reset-uptime', failover has no response if there is a counter on the secondary's 'link_failure'.
The 'link_failure' counter can be checked using the command 'diagnose sys ha dump-by group' as shown below:
It is required to check the status of port1 and port2 under HA-monitored interfaces:
config system ha set monitor port1 port2 <----- end
Note: Each port failure results in 50 increments in the counter, for example, one monitored interface down is 50, and two monitored interfaces down will be 100. |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.