Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Not applicable

FTP Time Out

We keep on experience FTP time out when we are behind fortigate 800. When we put up connection in front of fortigate (using the same internet line), we have no problem in upload and download. Any suggestion to check?
7 REPLIES 7
lmuir
New Contributor

Are you AV scanning FTP traffic? Have you configured the comfort client setting?
Not applicable

yes, I have av scanning ftp traffic. But I don' t understand what you mean by comfort client setting and how to configure confort client setting?
ede_pfau
SuperUser
SuperUser

We had the same issues here with some Linux ftp client starving on very big transfers. Disabling AV scanning helped. But that was before Fortinet introduced the comforting feature. It is configured in the associated protection profile. Have a look into the Admin Guide as well and the release notes of your major release. You might also try out if increasing the session timeout for FTP would help (default is 600 sec).
Ede Kernel panic: Aiee, killing interrupt handler!
Ede Kernel panic: Aiee, killing interrupt handler!
TopJimmy

ORIGINAL: ede_pfau You might also try out if increasing the session timeout for FTP would help (default is 600 sec).
where can I found that setting at? I' ve just checked the CLI and Admin guide and I must be having a blond moment because I don' t see it.
-TJ
-TJ
Not applicable

What firmware?? FortiOS 4.0 has issues with passive ftp. It has been resolved in 4.0.3 Hope it helps
g3rman
New Contributor

TopJimmy, take a look at this blog post. http://firewallguru.blogspot.com/2008/03/session-timeouts.html
A Real World Fortinet Guide Configuration Examples & Frequently Asked Questions http://firewallguru.blogspot.com
A Real World Fortinet Guide Configuration Examples & Frequently Asked Questions http://firewallguru.blogspot.com
TopJimmy
New Contributor

Thanks for the link! Unfortunately I' ve started to get the dreaded " Fortigate has reached system connection limit for x seconds" messages so I' ve been following the articles on the KB about reducing the TTL (among other things like AV, etc) to see if I can stop getting the messages. KB Articles: http://tinyurl.com/kjcyad http://tinyurl.com/nmhv3b
-TJ
-TJ
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors