Fortigate, number of firewall policies limitation

Moderator: mike

Post Reply
darko
Posts: 92
Joined: Tue Oct 24, 2017 2:42 pm

Fortigate, number of firewall policies limitation

Post by darko » Thu Sep 24, 2020 11:35 am

Is there a way to overcome this situation? Labbing with a limitation of only 5 security policies is not functional!!!!!

(policy) # edit 6
Too many entries in all tables of .firewall.policy in vdom root: 5 / vdom-max = 5
Command fail. Return code -4 (reached the maximum number of entries)

# get system status
Version: FortiGate-VM64-KVM v6.0.9,build0335,200121 (GA)
Virus-DB: 1.00000(2018-04-09 18:07)
Extended DB: 1.00000(2018-04-09 18:07)
Extreme DB: 1.00000(2018-04-09 18:07)
IPS-DB: 6.00741(2015-12-01 02:30)
IPS-ETDB: 0.00000(2001-01-01 00:00)
APP-DB: 6.00741(2015-12-01 02:30)
INDUSTRIAL-DB: 6.00741(2015-12-01 02:30)
Serial-Number: FGVMEVM80ACAGUD1
IPS Malicious URL Database: 1.00001(2015-01-01 01:01)
Botnet DB: 1.00000(2012-05-28 22:51)
License Status: Valid
Evaluation License Expires: Fri Oct 9 10:14:51 2020
VM Resources: 1 CPU/1 allowed, 1003 MB RAM/1024 MB allowed
BIOS version: 04000002
Log hard disk: Not available
Hostname: fw1
Operation Mode: NAT
Current virtual domain: root
Max number of virtual domains: 1
Virtual domains status: 1 in NAT mode, 0 in TP mode
Virtual domain configuration: disable
FIPS-CC mode: disable
Current HA mode: a-p, master
Cluster uptime: 1 hours, 4 minutes, 22 seconds
Cluster state change time: 2020-09-24 12:29:38
Branch point: 0335
Release Version Information: GA
FortiOS x86-64: Yes
System time: Thu Sep 24 13:34:10 2020

darko
Posts: 92
Joined: Tue Oct 24, 2017 2:42 pm

Re: Fortigate, number of firewall policies limitation

Post by darko » Thu Sep 24, 2020 3:25 pm

anyoneeee????????????

KKueck
Posts: 3
Joined: Mon Jun 01, 2020 9:21 pm

Re: Fortigate, number of firewall policies limitation

Post by KKueck » Thu Sep 24, 2020 4:38 pm

You have to obtain a license from Fortinet to overcome the limit. Without a license you are restricted to 5 policies and the strongest encryption algorithm you can run is DES. I'm sure there are other limitations.

darko
Posts: 92
Joined: Tue Oct 24, 2017 2:42 pm

Re: Fortigate, number of firewall policies limitation

Post by darko » Fri Sep 25, 2020 6:37 am

Yes, VDOMs cannot be used either. Shitty situation.

nbctcp
Posts: 41
Joined: Tue Apr 04, 2017 7:36 am

Re: Fortigate, number of firewall policies limitation

Post by nbctcp » Sat Sep 26, 2020 11:12 am

https://docs.fortinet.com/document/fort ... on-license
vdom can be enable but only single vdom can't be multiple vdom

Post Reply