Created on
11-25-2025
12:49 AM
Edited on
11-27-2025
03:09 AM
By
Jean-Philippe_P
| Description | This article describes the possible reason for service disruption after adding an IP Pools object, even though the object is not applied to any security policy. |
| Scope | FortiGate. |
| Solution |
Topology: Internet <---> [WAN] FortiGate [LAN] 14.14.14.17 <---> Client 14.14.14.100.
FortiGate IP Pools configuration:
config firewall ippool edit "test" set startip 14.14.14.100 set endip 14.14.14.100 next end
Scenario:
Analysis:
diagnose sniffer packet any 'icmp and host 14.14.14.100' 4 0 l interfaces=[any] filters=[icmp and host 14.14.14.100] 2025-11-19 14:39:58.714801 LAN in 14.14.14.100 -> 14.14.14.17: icmp: echo request 2025-11-19 14:39:58.714853 root out 14.14.14.17 -> 14.14.14.100: icmp: echo reply 2025-11-19 14:39:58.714861 root in 14.14.14.17 -> 14.14.14.100: icmp: echo reply
config firewall ippool |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.