Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Dom5
New Contributor

Cannot ping the internal interface of the Fortigate 100D

Good evening all,

 

I have a configuration that I am not sure why it does not work. 

 

This is Fortios 6.2.2

 

I attached the topology.

Static route on FTG is 

10.10.1.0/24 to 10.10.1.254

10.10.101.0/24 to 10.10.1.254

10.10.102.0/24 to 10.10.1.254

 

VLAN90 - 10.10.1.1/24 with default gateway 10.10.1.254

 

 

ping from Cisco 3750 switch to SVI interface of VLAN 101, has ping reply

ping from Cisco 3750 switch to FTG - 10.10.1.1, has ping reply

ping from PC1 to PC2, has ping reply

ping from PC2 to PC1, has ping reply

ping to 10.10.1.254 has ping reply

ping from PC2 to 10.10.1.1(FTG internal interface), has no reply

Ping from PC2 to WAN1 also has no reply

 

It seems the out going routing from different VLAN from VLAN90 will not be able to reach the internal FTG or external FTG WAN interface. 

 

Do you know why it does not be able to ping? I cannot ping 8.8.8.8 as well. 

 

PS: the ping has enabled on the interface. 

10 REPLIES 10
Dom5
New Contributor

The issue is resolved I have to engage the Fortigate solution engineer. Basically changed from physical switch vswitch interface to use physical interface directly as I have all the rule and configuration configured. Make sure to reboot the Fortigate after the change (this is the main reason why I configured using different type of interface even through I don't change the mode type, it still have to reboot)

 

 

Labels
Top Kudoed Authors