I’m deleting (or disabling) a firewall policy, but the sessions that were created under that policy remain active.
firewall-session-dirty is set to clear-all. But it doesn’t clear the existing sessions.
Is there any way to make FortiGate automatically terminate sessions when a policy is disabled or deleted?
Or is manual session clearing (e.g. via diagnose sys session clear) the only option?
If am not wrong changing the policy (e.g. service) will make the session dirty. If so then as a workaround you may change it before disabling it.
| User | Count |
|---|---|
| 2882 | |
| 1446 | |
| 843 | |
| 822 | |
| 455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.