Hi everyone, I could use some help today. We're experiencing some
unusual WAN latency issues. We have a setup using a pair of
FortiGate-120G and FortiGate-100F devices with a WAN configured in LACP
with 2x1Gb links. The network connection is structur...
Hello, Recently, I upgraded all my FortiGates from FortiOS 7.2.6 to
7.4.5. After several weeks with no issues, I took a closer look at my
configuration and noticed an unusual increase in IPSec VPN errors.
Specifically, the TX error counter on the IPS...
Hello, I'm running a LACP MCLAG on a couple of FortiSiwtch-1024D
(7.4.1). Linked to this MCLAG, I have a computer with 2x10GB interface.
LACP is correctly configured and works properly. I can down an interface
and all works as expected. I just have a...
Hi everyone ! I'm facing a very strange issue. I'm running FortiOS
7.0.8. On some of my FortiGate, I can't access to web gui trough LAN
interface. On my browser, I can see the certificate warning and after I
accept it, the donut is running indefinite...
Hi everyone ! I have an issue with FortiManager and CLI Templates. I
have a script and on it an address object target. For example :config
system sdwan config service edit 0 set name "RULE1" set mode sla set dst
"FMG_ADDRESS_OBJECT" ... if FMG_ADDRES...
Hi AEK, I opened a ticket at the beginning of this post. Support reply
to me it's not a bug. I continued with them to know why. In my case, all
my PPPoE devices (more than 100) are impacted. This reinforces my belief
that this is not an isolated case...
I my particular case, I can also reduce error with (in vpn phase1)
ip-fragmentation pre-encapsulationWith pre-encapsulation, bandwidth
trough my tunnel becomes very slow (2 times slower). There is something
with MTU/MSS of fragmentation but I don't k...
I continued my investigations and I think I founded the culprit. I tried
to remove ASIC inside VPN tunnel with command : config system global set
ipsec-asic-offload disableend Then after flushing tunnel, tx errors
totally disappear and my tunnel over...
Hi Johnathan, Thanks for your response. After some test, if I reduce the
bandwidth around 500Mbps the latency is now "normal". Between my
environnement and my FAI, I have two 1GB link with copper (connected on
10Gb switches). I suspected the copper m...
I continued my tests and tried downgrading my FortiGate to version
7.2.10, but observed the same behavior on this release. Therefore, I
suspect there might be something unusual in my configuration, likely
related to MTU/MSS settings. I can reproduce ...