Hi,
We have multiple traffic shapers and shaping policies configured, each with the same value set for both the guaranteed and maximum bandwidth. These policies are applied based on source networks and are linked to shaping policies (not directly to security policies).
The issue we’re encountering is that during testing, we are not seeing traffic reach the guaranteed bandwidth levels — even when the network is idle. We’re not getting close to the configured guaranteed/max bandwidth, and end-users are reporting slow performance.
Currently, we do not have any bandwidth defined on the outbound interfaces, and from what I understand, this might be a contributing factor. My question is:
Additionally:
Any guidance would be appreciated.
Hello,
Thank you for using the Community Forum. I will seek to get you an answer or help. We will reply to this thread with an update as soon as possible.
Thanks,
Anyone could help with this please?
Hello,
We are still looking for someone to help you.
We will come back to you ASAP.
Thanks,
Hello,
I found this answer by questioning our AI:
To address issues related to packet shaper and shaping policies on FortiGate, follow these steps:
Verify Configuration:
diagnose firewall shaper traffic-shaper list to view shared policy traffic details, including bandwidth and dropped packets.Check for Known Issues:
Debugging:
diagnose npu np7lite dce-eng-drop all to check for increased DCE_QTM_ENQ_DROP counts, which indicate packet drops due to shaping policies.DSCP Marking:
diffserv-forward and diffserv-reverse are enabled in the shaping policy configuration.Workarounds:
set status disable in the shaping policy configuration.By following these steps, you can troubleshoot and resolve common issues related to packet shapers and shaping policies on FortiGate.
| User | Count |
|---|---|
| 2677 | |
| 1412 | |
| 810 | |
| 703 | |
| 455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.