Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
nvcf
New Contributor

Firewall Policy Performing filtering even after deletion

 

Help pls

 

Escalate to FortiSupport or... ?

 

Firewall Policy (Policy ID 1 ) performing filtering even after deletion, this i confirm on FortiAnalyser.

 

I confirm deletion on FortiMgr-vm64 v7.2.2  Fgt3000D v7.0.7 (Gui, cli) also

 

FortiMgr is synchronized with Fgt3000D

 

Thanks in advance

image.png

3 REPLIES 3
scan888
Contributor

Hi

 

Try to check the traffic with "debug flow":

 

diag debug enable
diag debug flow filter addr <src or dst ip>
diag debug flow trace start 10

 

With the debug output ou are able to double check witch rule is applied definitily. 

- Have you found a solution? Then give your helper a "Like" and mark the solution.
- Have you found a solution? Then give your helper a "Like" and mark the solution.
AEK
SuperUser
SuperUser

Hi

Are you using policy based NGFW mode?

AEK
AEK
JimBennit
New Contributor

There is a bug that this will happen. Re create your policy 

use cli to config firewall policy, and do a no to the policy that you want deleted in the cli first and then delete the policy

Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors