Hi,
We having an issues where the SSH keep timeout when idle. This happen only for 1 IP Segment / VLAN.
Not sure if this related to the FW since we have multiple switch in between.
User -> Floor Switch -> CS Switch -> FW -> Servers
When login and idle for 5s, the session close. In the Fortigate i try config session-ttl based on the FG forum, but still same :
onfig system session-ttl config port edit 22 set protocol 6 set timeout never set start-port 22 set end-port 22 next end end
Anyone experience on this ?
TQ
Hi @Asyraf
This 5s timeout is probably configured ad ssh client level or ssh server level.
The session default ttl in FG is 1h if I'm not wrong.
You can run a packet capture to prove it. Filter for ssh port and the test IP - 5s is not a lot to wait. You will see who sends the FIN packet. Also, you can check immediately after if the session is still kept in FG (it should be kept for a max 2s after FIN - so you should be fast)
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.