Description | This article describes how to resolve an issue with FortiGate 6000 models where, despite how there are sessions in the output of 'diagnose sys session list' hitting one firewall policy, the Hit Count in the GUI for the firewall policy shows 0. |
Scope | FortiGate 6000 series. |
Solution |
Ensure that the Cooperative Security Fabric (CSF) is enabled on the FortiGate 6000 series unit, FortiGate 6000 needs to use CSF to get the Hit Count info from all blades.
To enable CSF via CLI, run the following CLI commands in Global mode:
config global config system csf set status enable end
Note: Rebooting the FortiGate will cause the Hit Count info to be reset to 0.
Related articles: |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.