Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Not applicable

Fortigate hangs itself every whole hour

Hello everybody, Since saterday evening, my Fortigate 200 stops working every whole hour for about 5 minutes. So for example at 21.00, 22.00, 23.00, etc. no more connections can be made to the server behind the Fortigate. I use the Fortigate as firewall with Anti-virus, Anti-Spam and the IDP enabled. It' s only goal is to protect the webserver and mailserver (which are on the same physical server) behind the firewall. I have to reset the Fortigate 200 by hand to make it operetional again for the next hour. Today I updated to MR6 of FortiOs 2.80, but that didn' t solve the issue, however after this upgrade the Fortigate seams to repair itself and comes up again after a few minutes. What should I do, because this server is very essential to my customers and all connections are lost when this happends? Anybody any advice? Thanks for the help! Kind regards, Koen Klomp
5 REPLIES 5
UkWizard
New Contributor

You havent got all your pc clients checking for virus updates at this time, have you ? They all may be download AV updates simutaneously. Just a thought. If you logon to the unit, is there any big number of CPU or MEMORY usage ?
UK Based Technical Consultant FCSE v2.5 FCSE v2.8 FCNSP v3 Specialising in Systems, Apps, SAN Storage and Networks, with over 25 Yrs IT experience.
UK Based Technical Consultant FCSE v2.5 FCSE v2.8 FCNSP v3 Specialising in Systems, Apps, SAN Storage and Networks, with over 25 Yrs IT experience.
Not applicable

Thanks UkWizzard for your reply. There are no clients behind the fortigate, it' s only used as a firewall to protect my servers behind the fortigate. The Fortigate also doesn' t use high CPU or memory, nor does it leave a message in one of the logs telling its down. However my internet provider told me that they replaced the switch in front of my firewall. I have no clue if this has something to do with it, but exactly minutes after replacing the problems started. At the beginnen the switch had many CRC errors because of a bad UTP cable, but that' s fixed now. I however still have the same problemens....
UkWizard
New Contributor

Try the following command on the CLI of the firewall. Will show you the network card stats, see if there are any errors clocking up. Not sure how the ISP could of replaced a switch in front of your firewall though ? surely the leaseline/dsl is in front of the firewall isnt it ?
UK Based Technical Consultant FCSE v2.5 FCSE v2.8 FCNSP v3 Specialising in Systems, Apps, SAN Storage and Networks, with over 25 Yrs IT experience.
UK Based Technical Consultant FCSE v2.5 FCSE v2.8 FCNSP v3 Specialising in Systems, Apps, SAN Storage and Networks, with over 25 Yrs IT experience.
Not applicable

What you should check if you have specific navigational service create, for example if you only allow http, https and dns, to make a web navigation service group, if you have done this did u apply a protection profile to it?, where I am going with this is that I have seen this problem and it was caused because in your protection profile u have enable settings that shouldn' t be on, for example going back to the navigational example, you should only have http enabled in the protection profile, what happens is, the fortigate gets stressed and it goes offline for a few minutes. I am not sure this is your problem but you could check, this might help out.
Not applicable

My reseller replaced my Fortigate after which all the problems were solved with exactly the same configuration. My guess is that one of the network ports are mallfunctioning. However the replaced Fortigate is a spare unit and has to be returned. I' m therefore still trying to find out what the absolute problem so that i eventually can use this device again (or return it to fortigate with an exact definition of the problem). @UkWizzard My Fortigate is in a datacenter where it gets it connection from the switch in the rack (the rack switch is again connected to the core switch of the datacentre). This rack switch was replaced after which the problems started. @Agarda Thanks for this tip, I indeed use one protection profile for all the different services, I don' t split them up in for example navigational services and mail services. I will try it out.
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors