Fortigate netscan 100% CPU Utlization

If you have a Fortigate with a file scanning subscription, like a 200B/D, you will find that it’s not powerful enough to handle the task and your CPU will be running at 100% utilization, your firewall is unresponsive, network throughput is down etc.

You can turn it off via the command line (cli)

config log memory filter
set netscan-discovery di
set netscan di

