I have generated new SSL certificates for the FortiGate firewall, and
trusting the new CA. But it appears that FortiGate is still using the
old SSL GUI certificate. I followed this document for
regeneration:https://docs.fortinet.com/document/fortigat...
I am trying to achieve granular access control for each user, with
strong definite unspoofable identity with IPsec user identity. IPsec
login uses user account, and by allowing each user to only access the
network through IPsec, I thought I should ab...
Ok I solved the problem: Step 1:I exported the system configuration to a
yaml file, then reset FortiGate to factory, then imported the yaml
configuration back. This is a fresh install with previous config so to
speak. Step 2:I created a new certifica...
Thank you so much for replying!! After connecting with IPsec, under
Dashboard > Forticlient Monitor, Dashboard > Firewall User Monitor, no
user or group was found. The user information is apparently only used as
IPsec log in, but not identified for f...
I saw this post which have me hope that my setup would work but it's for
version 5.0Technical Note: Use of an Identity-based policy for the
FortiClient IPsec VPN network access
restrictionhttps://community.fortinet.com/t5/FortiClient/Technical-Note-U...