Hi all,
i am facing one of the strange issue with FortiGate 401F model it run Firmware Version 7.0.12.
suddenly sometimes this FortiGate stop working even i can not access internal corporate subnets and internet but when i am checking 8.8.8.8 from FortiGate firewall Console i can reach to 8.8.8.8 but client can not ping 8.8.8.8 and can't brows to the internet.
i was opened TT with FortiGate Tach still they are also looking for this issue this issue happen sometime in a week two times and sometime in a month.
i troubleshoot allot and check the internal network after troubleshooting the last thing which i did it was i configure on of the physical port of the FortiGate to check and allow that test subnet to internet for testing purpose when this issue happen i connect my laptop direct to that test port but i had no internet so due to that i figure out that issue is with FortiGate firewall becouse even direct from FortiGate i dont had internet, during this period of time even i can not reach my internal subnets as well, it down the functioning for 5 minuets after 5 minuets everting coming up and working.
any one else had the same issue.
looking forward for your nice comments on this.
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Can you check if the system was entering conserve mode during the time of issue using "diag debug crashlog read"
Hi @forti123,
As Suraj suggested, you can check if there were crashes or not. Additionally, you can run a debug flow while pinging across the internal network or to the Internet to see the traffic flow. Below are debug flow commands. You can replace IP address with a destination IP.
di deb disable
di deb res
diagnose debug flow filter clear
di deb flow filter addr 10.0.2.5
di deb flow filter proto 1
diagnose debug flow show function-name enable
di deb flow show iprope en
diagnose debug console timestamp enable
diagnose debug flow trace start 500
diagnose debug enable
- Run 'di deb dis' to disable the debug.
Regards,
Hi @forti123
You can check quickly memory utilization by the command or in the dashboard gui
#get system performance status
If memory is normal, when the issue happens then we need to take traffic debug.
Regards,
Same firmware. I am experiencing a similar problem suddenly after a power outage. Never had this problem before. The Fortigate will allow all traffic to communicate as normal with the exception of one particular policy allow. It doesn't make sense. Rebooting resolves the issue. No error messages in the log that indicate any problem. I'm going to explore updating to the latest mature edition. Did you resolve this issue yourself?
I should add that this problem now randomly occurs, where it did not before.
Hi @ericthetech
Check the system event logs,
And crash logs
###diag debug crash log read
this commad will give output of crash logs
Regards,
Hi @forti123,
It look like device enter conserve mode. You can check that using commands provided by Vinay. If that the case, please refer to this document for initial troubleshooting https://community.fortinet.com/t5/FortiGate/Troubleshooting-Tip-How-to-do-initial-troubleshooting-of...
Regards,
Minh
HI,
I am also facing the same issue what you have mentioned in FortiGate 401F. firmware v7.2.5 build1517
Pls share the solution if your issue get resolved.
Thank you
Hiiii
I am also facing this issue
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1720 | |
1093 | |
752 | |
447 | |
234 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.