Description | This article describes the best way to troubleshoot a dead interface on FortiGate. |
Scope | FortiGate. |
Solution |
If a port on FortiGate seems to be dead or non-functional, a loopback test is the best way to consider as part of troubleshooting. This ensures and eliminates the issue from the other end device connecting to that interface and isolating the test with the Firewall itself.
In this example, consider WAN1 as the port that seems defective, and port1 is the healthy port.
Additionally, check the LED light ON/OFF and physical connections and cables are in good shape.
Run the command below to diagnose interface status.
diagnose hardware deviceinfo nic port1
After verifying the speed and duplex settings of the interface on the firewall as per the below KB article: Technical Tip: Changing the speed of a FortiGate interface
Connect a new or working network cable to the working interface on the firewall, such as port1 from this example, and connect the other end of the cable to the non-working interface, such as WAN1.
Once the connection is made, if the interfaces still do not come up, perform an HQIP test by leaving this connection until the HQIP test is done.
Related articles: Technical Tip: HQIP test (with built-in FortiOS diagnostic commands) FortiGate HQIP test self-loopback cable Ethernet How to identify interface is defective - Fortinet Community Technical Tip: How to connect to the FortiGate and FortiAP console port |
|
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.