Description This article describes how local out traffic is handled when
policy-based IPsec is configured. Scope FortiGate. Solution In FortiOS
documentations, it is possible to find that self-originating traffic
from the firewall (such as license va...
Description This article describes the client-comforting feature of the
FortiGate. Scope FortiOS supported versions. Solution Client-comforting
is designed to avoid issues with connection timeouts and file download
failing while waiting for Firewall ...
Description This article describes the cause of a 'WSL failed' error
while installing FortiNBI on a virtual machine. Scope FortiNBI,
FortiProxy. Solution FortiNBI utilizes a WSL 'windows subsystem' that
allows using a Linux environment directly on Wi...
Description This article describes how to regenerate FortiGate build-in
SSH keys for PKI admin authentication. Scope FortiOS. Solution First, it
is possible to list the current keys with the command below: fnsysctl ls
-l /etc/ssh/ -rw------- 1 0 0 Tu...
Description This article describes the maximum retransmission attempts
the Fortigate TCP stack will attempt before resetting a TCP connection
Scope FortiGate. Solution In TCP protocol, every stream of data sent to
one side requires an ACK packet to b...
Hello, Think of the Zones like different interfaces, you can set up
sd-wan zone with members port1 and port2 and set the zone as destination
intf in a policy. Then you can create a specific rules for how to
balance the traffic between the interface m...
Hello, You can try with webfilter static URL. Simply create a Static URL
entry to block "www.linkedin.com/jobs/ "
https://community.fortinet.com/t5/FortiGate/Technical-Tip-Using-a-static-URL-filter-feature-to-allow-block/ta-p/193086
Note: You must al...
Hello, You don't get a straight answer, because there isn't. A default
value which will protect all possible environments will practically have
block access to internet. -AntiVirus default will protect you as overall
there is not a lot to modify on i...