Hi!
I have an issue that has been bugging me for quite a while. I have a FortiSwitch where all the ports appear as offline in my FortiGate GUI, but the ports are active and, for the most part, functioning properly. I assumed this was a silly GUI visual glitch until recently, when I tried to add a FortiAP. However, it does not register when plugged into the switch, but it does register when plugged into the firewall or another switch.
I have tried reboots and performed a factory reset on the switch, which provided some relief. The switch now lists the devices connected to the ports, but all the ports still show as offline. The ports appear to show activity when viewed on the console. This issue appeared one day after no known changes, such as updates or configuration changes.
Here is some information about the devices.
Fortigate 60F Version: v7.2.11 build1740
FortiSwitch Version: S124FN-v7.6.1-build1047
FortiLink manages switch. I have other switches connected and working without issue.
Thank you for any help you can provide :D.
Hi AustinDouglas1996
Could you please share some snapshots about the issue ? and the output of commands too. Thanks
Bill
Hi Bill,
I hope you're doing well and keeping cool. Here is an image of the GUI showing the ports down, but these devices are connected without issue.
Here is the switch diagnostics page on the GUI
Then here is some command output:
get system interface physical
== [onboard]
==[internal]
mode: dhcp
ip: 169.254.1.3 255.255.255.0
ipv6: ::/0
status: up
speed: n/a (Duplex: n/a)
rx : 81905237 bytes 586510 packets
tx : 400577877 bytes 829908 packets
get switch trunk
== [ 8FNTF21009498-0 ]
name: 8FNTF21009498-0 restricted: 0 members : port6
diagnose switch physical-ports summary
Portname Status Tpid Vlan Duplex Speed Flags Discard
__________ ______ ____ ____ ______ _____ ____________ _________
port1 up 8100 4070 full 100M QS, , none
port2 down 8100 4070 half - QS, , none
port3 up 8100 4070 full 100M QS, , none
port4 up 8100 4070 full 1G QS, , none
port5 up 8100 4070 full 1G QS, , none
port6 up 8100 4094 full 1G QS,TL, none
port7 up 8100 4070 full 1G QS, , none
port8 down 8100 4070 half - QS, , none
port9 down 8100 4070 half - QS, , none
port10 up 8100 4070 full 1G QS, , none
port11 down 8100 4070 half - QS, , none
port12 up 8100 4070 full 1G QS, , none
port13 up 8100 4070 full 1G QS, , none
port14 up 8100 4070 full 100M QS, , none
port15 up 8100 4070 full 1G QS, , none
port16 up 8100 4070 full 1G QS, , none prt_switch_phyport_summary: unable to get port17(#17) status
prt_switch_phyport_summary: unable to get port18(#18) status
prt_switch_phyport_summary: unable to get port19(#19) status
prt_switch_phyport_summary: unable to get port20(#20) status
prt_switch_phyport_summary: unable to get port21(#21) status
prt_switch_phyport_summary: unable to get port22(#22) status
prt_switch_phyport_summary: unable to get port23(#23) status
prt_switch_phyport_summary: unable to get port24(#24) status
port25 down 8100 1 full 10G QS, , none
port26 down 8100 1 full 10G QS, , none
port27 down 8100 1 full 10G QS, , none
port28 down 8100 1 full 10G QS, , none
internal up 8100 4094 full 1G , , none
Flags: QS(802.1Q) QE(802.1Q-in-Q,external) QI(802.1Q-in-Q,internal)
TS(static trunk) TF(forti trunk) TL(lacp trunk); MD(mirror dst)
MI(mirror ingress) ME(mirror egress) MB(mirror ingress and egress)
CF (Combo Fiber), CC (Combo Copper) LL(LoopBack Local) LR(LoopBack Remote)
Thank you, for your information, I will work with engineering team about this issue.
Regards
Bill
I’ve seen FortiSwitch ports show as "down" in the GUI even though traffic flows fine. In my case, it was a mismatch between firmware versions and FortiLink settings. Make sure LLDP is enabled and confirm the switch is fully authorized in FortiGate. A reboot or re-sync sometimes resolves display issues. CLI status usually gives the true state, not the GUI.
It sounds like the issue you're experiencing is related to a mismatch or communication problem between the FortiGate and the FortiSwitch over FortiLink, which is causing the GUI to incorrectly show the switch ports as offline. Since you've confirmed that the devices connected to the switch ports are mostly working and the console shows activity, the physical connectivity is likely fine.
Hi,
Did you manage to solve it?
I have the same issue, ports showing down but working.
FSW in 7.6.1 and FGT 7.4.8.
We rebooted the FSW and checked all the configurations. TAC is working on this case also.
Thanks.
Hi lexdef
Could you please share the ticket number? I could reproduce the issue again in the lab based on your configuration in the ticket. Thanks
Bill
User | Count |
---|---|
2552 | |
1356 | |
795 | |
646 | |
455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.