Hi all! Still learning the FortiOS and have run into a issue and its time critical i get it fixed ( Sites need to print Paychecks tomorrow )
So 2 of my 3 tunnels when down and i started with trying to ping the Public IPs and sure enough from CLI Fortinet/windows i can not ping those public IPs but if i log into the comcast modem can ping the public IP addresses and if i go to the other 3 sites and ping the Main sites IP that come back as responding from Fortinet/Windows and the Modems. Any ideas on what may have gone down or broke?
Any help is appreciated!
Hello Geovantae, good day!
sure enough from CLI Fortinet/windows i can not ping those public IPs
>>> please grab the output of the following from FGT CLI: [please obfuscate sensitive details]
exe ping 1.1.1.1
get router info routing-table all
get router info routing-table details 1.1.1.1
get router info routing-table details <Remote-public-IP>
These commands will verify the routing on the FortiGate.
Also, here are few articles you can follow to TS the issue:
https://community.fortinet.com/t5/FortiGate/Troubleshooting-Tip-Routing-Issue/ta-p/195727
https://community.fortinet.com/t5/FortiGate/Troubleshooting-Tip-IPsec-VPNs-tunnels/ta-p/195955
https://community.fortinet.com/t5/FortiGate/Troubleshooting-Tip-Troubleshooting-IPsec-Site-to-Site-T...
Much Thanks.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1759 | |
1116 | |
766 | |
447 | |
242 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.