Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Silver
New Contributor

Interface port stop responding

Dear All,

 

We are installing 2x fortigate 1000D in HA on active and passive. After completed all the configuration and ready to go live we noticed that 1x interface port x  was not working properly. No traffic was going through this port. We have downed the interface manually and then re enable the port. Port was up and running for around 30 second and then no traffic could go through it. We try using different port no problem found everything was working fine as expected.  The port x we are using for IPVPN Premium where all the incoming traffic such as FTP, Email, and VPN go through this router. Please note for internal communication everything is working fine except for the IPVPN premium wan connection.

Can some can tell me where could be the problem. If I start a ping from internet to the public ip address configured on the interface port on the firewall its only reply for around 30 second then stop and same for other services also like rdp, ftp etc.

 

 

Thanks

 

9 REPLIES 9
ashukla_FTNT
Staff
Staff

Which port you are using (fiber, copper)?

How is the speed and duplex on that port?

If you do a HA failover do you face the same issue?

Silver
New Contributor

Hi,

thank for your reply. the port is copper and i have not yet tested the ha fail over but the ha is up. but if i change the port to other port then it work fine without problem only to one port am facing the issues.

ashukla_FTNT
Staff
Staff

Sounds like hardware issue.

Do a fail-over and if there is no issue with other device then chances are high that hardware is bad (make sure you connect the secondary port to the same device (and same port) where first one had issue)

You can run HQIP test and if that shows a problem, then just open a ticket with support and attach HQIP report and you will get a new device.

 

HQIP KB:

http://kb.fortinet.com/kb/viewContent.do?externalId=FD30363 

 

Silver
New Contributor

Hi,

 

Thank you for your reply. strange thing that i did test the same port after factory reset the configuration and test same port its working fine without issues. after i reload the config then i notice the problem only on the same port.

 

what could be the problem very strange

ashukla_FTNT
Staff
Staff

Can you post the complete configuration (you can mask the ips and other sensitive info)

Silver
New Contributor

hi,

 

i sorted out the issues 

 

thank you all

ashukla_FTNT

Silver wrote:

hi,

 

i sorted out the issues 

 

thank you all

What was the issue?

Silver
New Contributor

on the dead gateway detection the isp dns server was not responding icmp ping. while changing to different ip its working fine

Shawn_W

Glad you found the issue.  Thank you for sharing.

Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors