hello , here jai two wan the first is set up for ipsec the second is to go to internet I have a problem with the webfilter when I put a web filter in a policy via wan 1 PPPOE the webfilter its work but when I put it on the wan 2 ip manual the webfilter blocks everything
This is really weird. The outputs of "diag debug rating" confirms that you do have a connection with the FortiGuard servers and no lost packets.
Can you collect the outputs of the routing table?
get router info routing-table all
Created on 02-15-2025 12:51 AM Edited on 02-15-2025 12:52 AM
S* 0.0.0.0/0 [1/0] via .........., port1, [1/0]
[1/0] via 10..................., ppp2, [2/0]
C 10.1.0.0/22 is directly connected, x1
S 10.212.134.0/24 [10/0] is directly connected, ssl.root, [1/0]
C 4........./30 is directly connected, port1
C 10........./32 is directly connected, ppp2
C 10......./32 is directly connected, ppp2
C 172.16.0.0/22 is directly connected, x1
C 192..../30 is directly connected, port1
Hi @Ouams_90 ,
This is a really weird issue. I suggest you open a TAC ticket to get further assistance.
FINALLY I was able to solve the problem
the problem was with certificate-inscpection i made a cloning of the certifate and i modified in the cli :
config firewall ssl-ssh-profile
edit “profile_name "
config https
set cert-probe-failure allow
end
end
blocked sites will be blocked and authorized sites will be authorized everything is in order
thank you for your help.
User | Count |
---|---|
2549 | |
1356 | |
795 | |
646 | |
455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.