Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
sean3
New Contributor III

what does ip connection error in FortiAnalyzer mean?

greetings all,

 

I'd like to know what does "IP connection error" exactly mean in FortiAnalyzer? 

we are a production factory and when there is some delay from the production line, I can see the log IP connection error displayed in fortianalyzer, and matches the production delay time. So it is quite critical that we know what does this exactly mean, so we have a direction to do troubleshooting.

ip connection error.PNG

is this log entry a single packet? or it consists of a complete 3-way handshake of a TCP connection or even more? What could cause the kind of log occur?

If the log detail is needed, please see the screenshot as below:

detail1.PNGdetail2.PNGdetail3.PNG

1 REPLY 1
ozkanaltas
Valued Contributor III

Hello @sean3 ,

 

You can review this document regarding the reason of ip connection error.

 

https://community.fortinet.com/t5/FortiGate/Technical-Tip-ip-conn-traffic-action-in-logs/ta-p/198452

 

If you have found a solution, please like and accept it to make it easily accessible to others.
NSE 4-5-6-7 OT Sec - ENT FW
If you have found a solution, please like and accept it to make it easily accessible to others.NSE 4-5-6-7 OT Sec - ENT FW
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors