- Joined
- Mar 9, 2016
- Messages
- 4
- Reaction score
- 1
I know you've all seen this message before, but I'm gonna ask it anyway. I have 2 installs at separate facilities which are both exhibiting the same new behavior. These 2 locations were installed a month or so ago on 15.5 (Windows), and passed the firewall check. Both are running on a Fortigate 100E. I have followed all the guides and requirements for Fortigate usage.
The locations in question are not quite open for business, and I was asked to bring them up to v16 before the doors open. Now, in both locations, I'm seeing random ports display the "mapping does not match" error when running the firewall checker. It is always 1-5 random ports, and they are always off by 1-2 lines. For example, 9214 will report as 9212, etc. The list changes every time.
NOTHING has changed on the firewalls - I'm the only one with access at the moment. I've verified there are no flooding / DoS policies in place. I've been chasing this a few hours now with no explanation and countless failures.
Soooo... I rolled one of them back to 15.5 while making no changes to networking. Passes fine. Ran it 3 times. To reiterate, a machine that fails the firewall check on v16 passes with flying colors on 15.5 with no changes to any networking configs.
I notice the firewall check is much faster in 16. Is there a way to slow it down? I think that may be part of the issue. Has anyone else seen this behavior? The ports and check process are the same as far as I know. Appreciate any ideas you may have. Knowing it passes on 15.5 and the networking is correct, I'll probably go to 16 and leave them, but seeing that big failure is going to bug me.
Thanks.
The locations in question are not quite open for business, and I was asked to bring them up to v16 before the doors open. Now, in both locations, I'm seeing random ports display the "mapping does not match" error when running the firewall checker. It is always 1-5 random ports, and they are always off by 1-2 lines. For example, 9214 will report as 9212, etc. The list changes every time.
NOTHING has changed on the firewalls - I'm the only one with access at the moment. I've verified there are no flooding / DoS policies in place. I've been chasing this a few hours now with no explanation and countless failures.
Soooo... I rolled one of them back to 15.5 while making no changes to networking. Passes fine. Ran it 3 times. To reiterate, a machine that fails the firewall check on v16 passes with flying colors on 15.5 with no changes to any networking configs.
I notice the firewall check is much faster in 16. Is there a way to slow it down? I think that may be part of the issue. Has anyone else seen this behavior? The ports and check process are the same as far as I know. Appreciate any ideas you may have. Knowing it passes on 15.5 and the networking is correct, I'll probably go to 16 and leave them, but seeing that big failure is going to bug me.
Thanks.