FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
Anonymous
Not applicable
Article Id 199673

 

Description This article describe how to troubleshoot the OSPF – Packet with DF bit set.
Scope  
Solution

- Due to a bug, it is noticed that all the OSPF packets generated in 6.0.x FortiOS were had Do not Fragment bit set to 1.

 

- This issue is resolved in 6.2.x.

 

- DF bit = 1, can be an issue when packets go through third party switches like Cisco Nexus, that have an interface mtu (on layer 2  interfaces).

 

Refer the snapshot below:

  

ranand_0-1637917775065.png
Contributors