Firewall address list may show incorrect error for an unresolved FQDN address. This is purely a GUI display issue; the FQDN address can be resolved by the FortiGate and traffic can be matched.Workaround: run the following command to check if an FQDN address is being resolved properly.# diagnose test application dnsproxy 7