Hello fellow gurus. I am hoping one of you maybe able to help me with a problem I am facing.
I just deployed two Azure FortiGate VMs using the market place in a HA acive-passive with ELB/ILB.
I am able to get in to the management web interface. When I try to ping 188.8.131.52 from the cli 'exec ping 184.108.40.206' I am getting a 100% loss.
I check and I have the static route setup (which is created by default).
What else am I missing here? I'm new in Azure so it's probably something simple.
May I know if you have used any source for the ping?
execute ping-options ?This will show you if there are any filters set for the source.
If not, may I know if you have enabled VDOM?
I understand that you have created the FortiGate VM and tried to reach internet by initiating ping to 220.127.116.11
Please check below steps to narrow down the issue:
1. You need to ensure you have default route created towards the Internet facing interface.
2. Check if there is arp entry for the default gateway IP using "get system arp" or "diag ip arp list".
3. Only if arp entry is present, the ping initiated will be forwarded towards Egress interface and you can check on packet capture that the traffic is sent out or not.
If it is sent out and there is no ICMP reply packets, then this is not FortiGate concern.
If there is no ICMP request shown in packet capture, then we can suspect that the issue is with traffic not being sent out of FortiGate VM.
Do let me know if you have any other queries/concerns.
Hi,As I understand you're unable to ping 18.104.22.168 from FortiGate firewall. Please provide me the output of below commands to check further:
get router info routing-table details 22.214.171.124diag sniffer packet any "host 126.96.36.199 and icmp" 4 0 a<after runnin this command initiate ping traffic >
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2023 Fortinet, Inc. All Rights Reserved.