Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Not applicable

DMZ - IP Address conflict!

I can' t figure this out. I have Fortigate-60 (firmware 413 - build8424) and have DMZ interface configured with the address 192.168.10.1/255.255.255.0. I have a PC directly connected to the DMZ port with a static address 192.168.10.10/255.255.255.0. For some reason, the PC will not connect to the network. Windows complains that there is an IP address conflict with another system on the network. Checking the logs on the PC and it shows the conflict is with the DMZ interface. ( I can tell by the MAC address.) Am I missing something here????? Any suggestions at all are appreciated.
24 REPLIES 24
rwpatterson
Valued Contributor III

Have you tried another Cat-5 cable there??

Bob - self proclaimed posting junkie!
See my Fortigate related scripts at: http://fortigate.camerabob.com

Bob - self proclaimed posting junkie!See my Fortigate related scripts at: http://fortigate.camerabob.com

Okay - tried with a different Cat5 cable. Sadly, same result.
UkWizard
New Contributor

Could you post the output of the command; show system interface obviously change the external ip though, so its not disclosed..
UK Based Technical Consultant FCSE v2.5 FCSE v2.8 FCNSP v3 Specialising in Systems, Apps, SAN Storage and Networks, with over 25 Yrs IT experience.
UK Based Technical Consultant FCSE v2.5 FCSE v2.8 FCNSP v3 Specialising in Systems, Apps, SAN Storage and Networks, with over 25 Yrs IT experience.
Not applicable

FGT-60 # show system interface config system interface edit " internal" set vdom " root" set ip 192.168.2.90 255.255.255.0 set allowaccess ping https ssh set type physical next edit " dmz" set vdom " root" set ip 192.168.100.1 255.255.255.0 set allowaccess ping https ssh http set type physical next edit " wan1" set vdom " root" set ip 2xx.2xx.1xx.245 255.255.255.248 set allowaccess ping https set type physical next edit " wan2" set vdom " root" set allowaccess ping set status down set type physical next end
Not applicable

That made a difference! I upgraded the firmware to V3 build 0413 - and now the PC connected to the DMZ port no longer complains about duplicate IP addresses. And the DMZ port responds to pings from the PC! So, hopefully I am just down to a configuration issue. Thanks for your help on this, gentlemen.
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors