Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
nvcf
New Contributor

Firewall Policy Performing filtering even after deletion

 

Help pls

 

Escalate to FortiSupport or... ?

 

Firewall Policy (Policy ID 1 ) performing filtering even after deletion, this i confirm on FortiAnalyser.

 

I confirm deletion on FortiMgr-vm64 v7.2.2  Fgt3000D v7.0.7 (Gui, cli) also

 

FortiMgr is synchronized with Fgt3000D

 

Thanks in advance

image.png

3 REPLIES 3
scan888
Contributor

Hi

 

Try to check the traffic with "debug flow":

 

diag debug enable
diag debug flow filter addr <src or dst ip>
diag debug flow trace start 10

 

With the debug output ou are able to double check witch rule is applied definitily. 

- Have you found a solution? Then give your helper a "Like" and mark the solution.
- Have you found a solution? Then give your helper a "Like" and mark the solution.
AEK
SuperUser
SuperUser

Hi

Are you using policy based NGFW mode?

AEK
AEK
JimBennit
New Contributor

There is a bug that this will happen. Re create your policy 

use cli to config firewall policy, and do a no to the policy that you want deleted in the cli first and then delete the policy

Labels
Top Kudoed Authors