Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Not applicable

session_ttl

Hi all, we are experiencing problems with SAP connections through our Fortigate 400. The session drops exactly after 10 minutes of beeing idle in SAP GUI. We' ve been searching for a solution for days now, and we found the session_ttl setting. The default value is 3600, which meens 1 hour. Hm. But there is also the possibility to set it for a special port. We did so for port 3200, which is the the port the SAP system listens on. The port is correct, i can see that with the sniffer. The docs say that the default value is 300 - makes 5 minutes. No idea why the session drops after 10 minutes. My config now looks like this:
# show system session_ttl
 config system session_ttl
         config port
             edit 3200
                 set timeout 7200
             next
         end
 end
Is this correct? Wha about the dynamically associated client port? Do I hve to mind that at all? Thanks for any answer ;-) stephan
2 REPLIES 2
Not applicable

FWIW: I have also had my doubts about the default session_ttl; my SSH used to drop after 5 minutes and so I added a separate session_ttl of 1800 for port 22 and now it is much better...(?) /msa
Not applicable

hi, thanks for your answer. Our problem was elsewhere: we have an eAladdin eSafe as Gateway before the fortigate and it has a config parameter called " lifetime" which is default - oh wonder - at 600seconds... changed it - SAP work! [:' (]
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors