Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
hesaum
New Contributor

All NAT session drops

In fortigate 600d, All NAT session drops  instantly, so to fix it i have to remove nat policies and add them again, it happens once every 3 or 4 month, i have voip,http,https traffic, In log there is only one "Session CLASH" 

fortios 5.6.4

 

any suggestion

1 REPLY 1
ede_pfau
SuperUser
SuperUser

Seems like the internal NAT table becomes full. Wondering how many sessions you have active at one time.

Some suggestions:

a)

upgrade to v5.6.8; read (all) the Release Notes, esp. "Bugs fixed"

b)

instead of deleting policies disable them. The point is to kill all active NAT sessions to clear the internal NAT table. From GUI, disabling a policy will kill all sessions through it. From CLI, you could kill all (or a filtered subset of all) sessions with one command.

c)

if possible, use more WAN addresses for NATting.

Ede Kernel panic: Aiee, killing interrupt handler!
Ede Kernel panic: Aiee, killing interrupt handler!
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors