Mark a Best Answer
Fortinet Community
Recently active
Hello, I can't access forticloud. It shows as shown in this picture. I have 2fa using forti token mobileOn the mobile app, it pops up to approve, but after approve, it says login validation failed token code is invalid I tried to do lost Fortitoken and when I got to this page, no sms code was sent to my number. Please help me.
Hello team! Is there a way to create VPN ipsec which could use domain users (AD) and use 2FA for each user?In this case, is there a way to use 2FA through email?I think, to configure a different 2FA for each user, these users should be in Fortigate, but I ask just in case that there is anything else that I cant see.If not, do you know any other VPN which would allow this? Is this possible with ZTNA? (I am still very noob with ZTNA), in this case I will need to learn more Thanks in advance.Regards,Damián
Hello: I have a Fortinet 60F, I changed the wan1 connection to Starlink, addressing mode dhcp and static route with dhcp too. If I enable wan1, the PCs can have internet with Starlink and with the other connection but the VPN drops, I have to disable wan1 for the VPN to work. I don't know if I have something else to configure or if the VPN is configured incorrectly, I have virtual IPs that point to one connection or another, I don't know if it is that, I attached one with the Starlink connection.We use forticlient for vpn connection.I hope you can guide me to solve these problems.Greetings
After upgrading my 248DF to 3.6.12, the unit is online and active, but shows offline and I cannot connect to it through fabric. I removed power for 15 sec and plugged back in and still shows offline. Suggestions?
What is the difference between Addresses vs Wildcard FQDN Addresses on Fortimanager?
Heya,Is there an official list or table to tell me what color is tied to what integer in the 'set color' command under the 'config firewall address'?
Hi, Im super new and wanted to try and test FortiSRA. So i installed FortiSRA and a windows machine in Hyper-v i have on my laptop. I Went through the guide Fortinet have on installing FortiSRA.All seem fine so far. And finally i have set the target of my windows machine in Hyper-v and created a secret.The ip on FortiSRA port1 is the same ip range as the windows machine in Hyper-v. But as soon as i try and launch the secret. I get ip x.x.x.x connection closed.I have even tried to create a target and secret for my physical laptop. And when launching i get a black screen. The demo i watched from Fortinet looks so simple. FortiSRA Demo | OT Security Troubleshooting:Should i be able to ping from the virtual windows machine to FortiSRA port1?
failed to connect to the vpn
I have encountered the following issue. I configured Traffic Shaping for several networks that pass through a single interface. I set a bandwidth limit at the IP level (Per IP Shaper) to 10 Mbps. After that, some users started experiencing problems accessing Outlook and certain websites. How can I configure Traffic Shaping so that this limit does not affect the availability of these services and sites?#FortiGate, #Shaping #Policy
How to make a sec vpn tunnel failover 2 ISP ( Internet Service Provider ) to azure vpn if primary ISP down automatic switch to secondary ISP Internet ?
Hello! I'm working on an exciting network improvement project to implement High Availability (HA) in my environment by adding a second Fortigate appliance. Currently, I have a single Fortigate 80F that's efficiently managing two WAN interfaces through SD-WAN. This setup allows me to create custom rules for routing specific devices through different WANs and provides automatic failover if either ISP experiences downtime. I would need to enhance this setup by implementing a second Fortigate appliance to ensure network continuity even if one Fortigate unit fails. I'm curious about the best approach to achieve this - would it require any additional hardware like switches? I'd greatly appreciate any guidance on implementing this redundant setup.
Dear Members,OS Segregation is required on specific VLAN, which has AP connected. Only android and iOS users can connect to that specific AP but not windows and linux users.
Hello,I have a new FortiAnalyzer on Azure cloud and I've attached 2 data disk 1024GiB each.On LVM info I can see only the disk 1 with 1024G, why? I expected to see 2 disk with 1024. Note: Another FortiAnalyzer on Azure with 2 disks (Disk 1 1024, disk 2 4096) are visible on lvm info
I would like to monitor the data usage of the SIM cards in our FortiExtender. I can see this in the GUI of the Fortigate Firewall. Does anyone has an idea how I can achieve this? We use zabbix as monitoring tool.
We use VXLAN over IPSEC with multiple VLANs and the current configuration is working. https://community.fortinet.com/t5/FortiGate/Technical-Tip-VXLAN-over-IPsec-for-multiple-VLANs-using-software/ta-p/195488https://community.fortinet.com/t5/FortiGate/Technical-Tip-How-to-setup-a-VXLAN-over-IPsec-deployment/ta-p/297665Yesterday, I noticed that I make a mistake with the configuration of the ipsec interface.FGT A set remote-ip 172.16.0.2 255.255.255.0FGT B set remote-ip 172.16.0.1 255.255.255.255Is it possible to define a /32 subnet for the remote ip on both sites ?Thanks!
Hi everyone, I could use some help today. We're experiencing some unusual WAN latency issues. We have a setup using a pair of FortiGate-120G and FortiGate-100F devices with a WAN configured in LACP with 2x1Gb links. The network connection is structured as follows: WAN ISP (LACP 2x1Gb) <----> 120G (in Transparent mode on VDOM) <----> 100F <----> LANWhen our WAN traffic increases, we notice a rise in latency, particularly visible with ping probes. Could this be an issue with the ISP, a security profile, or something related to NPU offloading or ASIC processing? Thanks
Please can anyone provide a brief description of what STP MODE within the FortiAP configuration is supposed to do when it is enabled? If it is related to Spanning Tree, how does the mode operate when spanning tree is also configured on the switch port is connected to?
FortiPAM - Is FortiPAM support HSTS settings?
I have done nse 7 public cloud security and nse 7 firewall before as everything is restructured. I am planning to undertake nse 7 public cloud security soon and nse 7 enterprise firewall and SDwan later. As certifications have been restructured, will nse 7 cloud keep all my other certifications alive? #nse
I would like to block some URL on URL filter , because they are youtube video download tool.I have added 5 URL today , like "freemake.com" , "getyoutube.com" , "zeemo.ai" already blocked successfully.But "yt5s.io" , "x2download.app" , both of them couldn't block successfully..... BTW, I have tried to use "content filter" to block theses website , but it was not successful too, I don't know why...
Good morning everyoneI recently entered the fortinet world. I have a Fortinet-VM02 that gets the default route via BGP (configured on port3) from our main router. On another interface (port4) the static public IP announced via BGP is configured. Port4 is the WAN port that will provide connectivity to our servers. I have to let the traffic generated by the firewall itself (output) exit from the IP of interface 4 instead of 3 otherwise the firewall does not renew the license or other services that require internet.the firewall obviously exits from 3 indicating the IP of interface 3 as the source addressThe forward traffic is ok, the VMs connected under port 4 navigate with their static IP belonging to the /24 subnet announced via bgp, the problem is only the output traffic of the firewall itself.thanks to whoever will answer me
Good morning, we purchased 2 FortiGateVM-2 licenses On the first machine we purchased the FortiCare / FortiGuard subscription while on the second one we did not.When we put the two VMs in active/passive HA we lose the FortiCare subscription also on VM1 Why?
Hi,I want to generate a specific FortiAnalyzer report as a PDF file, which contains all policy changes of my in total 10 fortigates. Each fortigate has in total 5-10 policies. My ambition is to get an monthly automatic generated PDF report of all policy changes from all policies and fortgates I've done during this time. The report should list the following issues: Policy ID, Device ID, Device Name, Source IP, Destination IP, Source Interface, Destination Interface, Action, Log ID & the Timestamp of the change. So I've seen in the FortiAnalyzer, that there is no pre-generated report like that.I know this report is possible with SQL code/ dataset only. So I've started a small and non finish SQL code because I'm a SQL beginner. This ist my SQL code currently: My question is, can anybody complete my SQL code so that all issues are included and the validation without any warnings?And can anybody explain me the nessecary steps and settings I've to do in FortiAnalyzer
Hello When my Fortimail 200E device boots, I only have an option to press F2 or F10 and nothing else.Seems like the HDD and Cache was formatted. How do I go about reloading the .out file if no TFTP menu option is available? Thanks
need to change the password policy on some FortiGates. That part is pretty straight forward. Am curious as to what occurs after. Are existing passwords still accepted, or is the user forced to change their password on the next login? Mainly curious as to how this affects the local admin account.
Already have an account? Login
No account yet? Create an account
Enter your E-mail address. We'll send you an e-mail with instructions to reset your password.