This article describes why virtual wire pair configuration is being purged when performing an installation of FortiGate.
FortiManager, FortiGate.
When the interface is configured from FortiGate or FortiManager Device Manager, but is not used at the policy level, this is expected.
This is because the virtual-wire-pair interface is a FortiManager policy package managed/controlled interface config, so it will install together with the Virtual Wire Pair policy and is considered as 'policy objects'.
The virtual-wire-pair interface needs to be used under Policy & Objects -> Policy Packages -> Firewall Virtual Wire Pair Policy (check under Tools -> Feature Visibility if this option is not visible).
Before that virtual-wire-pair needs to be referenced in the normalized Interface, and make sure the name is not the same as the existing Normalized Interface value under Policy & Objects -> Normalized Interface -> Virtual Wire Pair.
Once the normalized interface is configured, proceed to add it under policy.
If a normalized interface for a virtual wire pair is not created, it will not have an option to select in the policy.
Related article:
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.