Hi Team,
I am currently experiencing a weird one , we have our internal sites hosted in AWS with some servers being hosted there on VPN.
During the day we have intermittent drops to the site we trying to access but only on certain access points in the building and a reboot of the access points fixes the issue, please note when on cable I have no issues whatsoever.
I looked at the logs and found WPAD errors for the users but not really sure if this might be the issue as I am entry level when it comes to looking at those logs.
We have policies enable and tested without any security profiles and the issue persist with the same security profile enabled on the LAN connection.
I have looked at DNS and added manual DNS to the user machines and the issue persist.
Please note this is only an issue on certain access points at certain times during the day.
Nominating a forum post submits a request to create a new Knowledge Article based on the forum post topic. Please ensure your nomination includes a solution within the reply.
Hello Tauriq,
If you are facing client connectivity issues over the wireless, then you may check for the below reasons that could cause this.
Also, you can collect the below debugs when the issue happens, this will assist in analyzing what's happening with the 4-way handshake.
# diagnose wireless-controller wlac sta_filter <client MAC address> 2
Alternatively, if the issue is on the FortiGate end for some reason, you can check if cw_acd process is crashing or not using the below:
# dia deb crash read
This is referenced in the 'Client connection issues' section of the below document.
For further analysis, call the support and a TAC engineer will further assist you by analyzing the logs collected.
Regards
Hi @Tauriq,
It seems like you are having issues only on wireless network. What is the firmware version of the FortiGate and FortiAP? When did the issue start and what was changed? Can you share the error logs?
Regards,
We have determined that its not a network issue as anything else is accessible just our connection to the specific site, the unfortunate part is the issue occurs at very erratic times , its no fixed times at all and it happens to all the users connected to that specific access point.
I will run a packet capture if we experience the issue again , please be advise that this also only happens when connected to VPN which is a requirement to access our internal site.
Hello @Tauriq ,
If the issue is site-specific, and everything else works fine while being connected to specific APs, then it's best to take wireshark capture on the user device, ingress interface, and egress interface of the FortiGate. Then, look for any TCP retransmissions, resets, or others, and then correlate them with the captures of a working setup, i.e., the website that works in this topology.
Regards
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1665 | |
1077 | |
752 | |
446 | |
220 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.