Hi. The default session-ttl setting is 3600 seconds (1 hour). Are there any disadvantages to increasing this to 28800 seconds (8 hours)? Our application team are insisting we change the ttl because their app cannot perform keep-alives and I realise that this will mean that the number of sessions kept open on the firewall will increase and possibly affect performance but is there anything else? Also is there a Fortinet TID that contains disadvantages of an increased TTL?
Firewall is a VDOM on an 800D
For limited number of policies is fine. I have similar case and I don't have any problems. You shouldn't change it globally only per policy to avoid keeping sessions which could be terminated.
Select Forum Responses to become Knowledge Articles!
Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.
User | Count |
---|---|
1742 | |
1110 | |
758 | |
447 | |
240 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.