Dear All,
We are installing 2x fortigate 1000D in HA on active and passive. After completed all the configuration and ready to go live we noticed that 1x interface port x was not working properly. No traffic was going through this port. We have downed the interface manually and then re enable the port. Port was up and running for around 30 second and then no traffic could go through it. We try using different port no problem found everything was working fine as expected. The port x we are using for IPVPN Premium where all the incoming traffic such as FTP, Email, and VPN go through this router. Please note for internal communication everything is working fine except for the IPVPN premium wan connection.
Can some can tell me where could be the problem. If I start a ping from internet to the public ip address configured on the interface port on the firewall its only reply for around 30 second then stop and same for other services also like rdp, ftp etc.
Thanks
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Which port you are using (fiber, copper)?
How is the speed and duplex on that port?
If you do a HA failover do you face the same issue?
Hi,
thank for your reply. the port is copper and i have not yet tested the ha fail over but the ha is up. but if i change the port to other port then it work fine without problem only to one port am facing the issues.
Sounds like hardware issue.
Do a fail-over and if there is no issue with other device then chances are high that hardware is bad (make sure you connect the secondary port to the same device (and same port) where first one had issue)
You can run HQIP test and if that shows a problem, then just open a ticket with support and attach HQIP report and you will get a new device.
HQIP KB:
http://kb.fortinet.com/kb/viewContent.do?externalId=FD30363
Hi,
Thank you for your reply. strange thing that i did test the same port after factory reset the configuration and test same port its working fine without issues. after i reload the config then i notice the problem only on the same port.
what could be the problem very strange
Can you post the complete configuration (you can mask the ips and other sensitive info)
hi,
i sorted out the issues
thank you all
Silver wrote:hi,
i sorted out the issues
thank you all
What was the issue?
on the dead gateway detection the isp dns server was not responding icmp ping. while changing to different ip its working fine
Glad you found the issue. Thank you for sharing.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1711 | |
1093 | |
752 | |
447 | |
231 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.