| Description | This article describes why Policy & objects -> Firewall policy network -> SD-WAN -> SD-WAN rule FQDN address objects show as unresolved. |
| Scope | All supported FortiGate firmware. |
| Solution |
While creating an IPv4 policy or an SD-WAN rule with FQDN address objects, the Policy & objects -> firewall policy, network -> SDWAN -> SDWAN rule section in the GUI will show them as unresolved even though, under address objects, the FQDN shows as resolved.
However, upon cross-verifying in the CLI, the address for the FQDN address objects created will list the IPs.
diagnose firewall fqdn list-ip
List all IP FQDN:
fqdn_u 0x10189941 login.microsoftonline.com: type:(1) ID(33) count(11) generation(3868) data_len:143 flag: 1
This will not cause any impact in the firewall with the actual traffic for the FQDN object policy, as the FQDN is actually resolved: this is only a cosmetic bug in the GUI (bug ID: 1014584). This issue is fixed in v7.2.9, v7.4.4, and v7.6.0. |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.