Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
johnycoms
Visitor

Fortigate - Shorten TTL for FQDN Address

Hi

 

Fortigate 101F

Version 7.6.0

 

I'm trying to reduce the TTL for a number of fqdn addresses by setting the cache-ttl on the address object itself.

 

When the default cache-ttl is set to 0, and also the global setting for fqdn-cache-ttl is set to 0, it is using 2400 seconds - which I assume is from the DNS query response. (The Fortigate is configured to use our DCs for DNS)

To overcome this, I have set the cache-ttl to 60 under the FQDN type address object, but it continues to use the 2400 timer?.

 

I am checking this by using command - diag test app dnsproxy 6 

 

Any help much appreciated

 

FortiGate 

0 REPLIES 0
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors