DescriptionThis article describes how to enable logging on
FortiController and configure it to send logs to syslog server or a
FortiAnalyzer(with syslog ADOM).SolutionSettings required On
FortiAnalyzer.- Enable ADOM on FortiAnalyzer (skip this step i...
DescriptionThis article describes how to reset the password on FortiMail
in HA(config-only) ScopeApplies to FortiMail HA in 'config-only'
modeSolutionExample: FortiMail HA with 4 devices in config-only mode and
the admin password is lost.steps by ste...
Description This article explains about how to reset the password of
FortiMail. Scope FortiMail. Note: The password reset with the maintainer
worked on v5.3.0 and below. From v5.3.1GA and later till v6.0.7 and
v6.2.3 'maintainer' option was removed. ...
DescriptionThis article explains how to access to the individual slots
with the same external management IP using the special port number.
Normal 0 false false false EN-US X-NONE AR-SA /* Style Definitions */
table.MsoNormalTable {mso-style-name:"Tab...
DescriptionThis article explains how to create a custom signature to
block files according to the hash value of the file.SolutionIn this
example, a custom signature will be created that allows a hash value (or
checksum) to be specified of a file that...
Hello Jacky, Welcome to the Fortinet Forum. I am not sure what exactly
the PCI report is referring to. However, on the Fortigate, both the UDP
idle timer and ICMP ttl are different from the session-ttl. For UDP,
below takes effect:config sys global s...
Hi,Yes, you can use any interface for the HA heartbeat. And even combine
different interfaces for the LACP.- When you add the LACP, it shows the
list of interfaces which can be added.Important thing is to make sure
that the speed of the interfaces wh...
1) Is this ok to leave as the "Action=Accept" for "Service=All" for the
policy if the "Destination=VIP"? Would the logs still show traffic
getting dropped if someone tries to access the public IP on a port that
is not getting forwarded via the VIP? Y...
Hello Emil, I haven't tried this in a production setup, however,
logically, it shouldn't impact the traffic if configured properly. You
enable the secondary vcluster and the production vdoms should be
configured to have the current master as master a...