Hello,
Can someone tell me what the default session-ttl value is? When I run config system session-ttl and show I get nothing.
(session-ttl) # show config system session-ttl end
I see it set in various firewall policies as "set session-ttl 0" which tells the policy to use the default. If the default above is not set what happens? Is there a built in default it's not showing me? I do not want to set a default and break anything.
The issue I am having is users are occasionally getting timeouts when using a web application from outside > DMZ. Sometimes it works fine and other times they get timeout errors. When looking at FortiAnalyzer traffic logs I see some sessions as "firewall action: close" and others as "firewall action: timeout"
The current policy that I am having issues with does NOT have any session-ttl values set. The service (http) under config firewall service custom has "set session-ttl 0" which again points back to a default that isn't set.
Solved! Go to Solution.
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Default values aren't displayed with the "show" command. If you instead enter "show full" you'll probably see:
config system session-ttl set default 3600 end
Hello,
Does anyone have any idea on this one?
Default values aren't displayed with the "show" command. If you instead enter "show full" you'll probably see:
config system session-ttl set default 3600 end
You can also run the 'get' command to show the default values:
fortigate (session-ttl) # get default : 3600 port:
Thank you! This is exactly what I was looking for. I didn't realize there was a difference between show and show full-configuration. This has explained a lot!
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1732 | |
1106 | |
752 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.