On a system with FSSO user settings, is it possible for Fortigate to
retain the last user logon list that was taken by the FSSO when it was
disconnected, and to allow the outputs? When FSSO is disconnected,
everyone appears to be a guest.
It may be related to the certificate.
https://community.fortinet.com/t5/FortiAuthenticator/Technical-Tip-Configure-Microsoft-Office-365-SMTP-as-Mail-server/ta-p/214959
You can quarantine the system by adding the sender address in the
dictionary profile used in recipient-based policies. It can be added as
^From: abc@abc.com$ in the dictionary profile.
Can you initiate a ping from a PC behind Fortigate to a PC behind Sierra
and get a debug?You must make sure that the packet enters the VPN. for
example:Let the PC behind FGT be: 192.168.1.100PC running Sierra: Let it
be 192.168.3.200 dia debug flow f...