Description This article describes how to change the DNS server IP
address. Scope All FortiGate. Solution By default, the FortiGate will be
added with the default FortiGuard server IP address on the DNS settings.
FortiGuard DNS servers are used by Fo...
Description This article describes how to block specific ports. Scope
FortiGate. Solution In this scenario, the configuration has been setup
to block the TCP port 4433 for outgoing traffic. A new service object is
created followed by the outbound fir...
Description This article describes the issue when it is impossible to
see the service field. Scope FortiGate 7.6.0. Solution When creating the
new policy for the first time, the service field will not be displayed:
It is necessary to select the desti...
Description This article describes how to allow ISDB for Gmail. Scope
FortiGate. Solution Open the firewall policy, then select a destination.
Select Internet Services -> Search for 'Gmail' and then select the Gmail
ISDB as shown below: In the same m...
Description This article describes why it is necessary to disable ASIC
on firewall policy. Scope FortiGate with ASIC. Solution The FortiGate
integrated sniffer will not capture packets that are offloaded with the
integrated ASIC, so NP6 or NP7, inclu...
++ASIC offloading is disabled on respective firewall policy.This is
because sessions offloaded by Network Processors (NP6, NP6Lite) will not
be captured by sniffer. Note: this make cause the high cpu, to prevent
cpu overutilization, create a more spe...
You can try to delete the logs and then upgrade it,execute log
delete-allIf the above doesnot work, then flash format the device and
upload 5.6.13 firmware and then the configuration and then upgrade it.
If still not working, then you can open a tick...
You may also check the below
links:https://community.fortinet.com/t5/FortiGate/Technical-Tip-FortiGuard-is-not-reachable-via-Anycast-default/ta-p/190041https://community.fortinet.com/t5/FortiGate/Technical-Tip-FortiGuard-Services-are-Unreachable/ta-p...