Hello,
we are using Fortingate 240D unit and suddenly we found "NAT port is exhausted" event, what can i do for this?
Thanks
You have so much traffic traversing the border and being NAT'd that you are utilizing all ports. You either need to create an IP Pool that has more than one external IP tied to it (so it load balances across them) or reduce the traffic traversing the border.
For a 240D it is impressive that you have enough sessions flowing to do that though...
Mike Pruett
Yes agreed more ippools. You can do something like split half of your address space behind 2 or more SNAT pool address
Alos keep in mind, if your network is a SRC or infection and are flooding the internet, you can see nat_pool exhaustation, so make sure that's not the case.
PCNSE
NSE
StrongSwan
Dear Michael and emnoc,
Thanks for your comments, problem is resolved.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1748 | |
1114 | |
765 | |
447 | |
241 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.