Hello all, I' m trying to change SSL proxy certificate on a new 100D FOS
5.0p4 cluster without any success and now I' m pretty sure that' s a bug
of the 5.0p4 because I also tried it on an older 4M3 system that I have
free access without a glitch.. J...
Hi All, someone is aware of what are the limits of Devices/MAC
persistent table entries in current FOS 5.04 ? Are them controllable or
extendable by user, or are dependent on the HW model ? Thanks in
Hi Kabuto, to get the desired result of a syncronized failover of both
side of VRRP I would try to use a combination of link-monitor for
outside path availability end second vrdst (cli only): link-monitor with
"set update-static-route enabled" "set u...
Hi Richie, odd to say the least.. are all vdoms in nat mode ? maybe an
overlooked/missed/unused ippool overlapping ? this is the most ordinary
hypothesis that come to my mind.. By the way, if it's confirmed as a
bug, can you helping us to understand ...
Hello Richie I've read your update too late.. so forcing ARP replay
binding to specific interface seams to resolve the issue.. the most
interesting thing it's "set src-nat-vip enable" since it's not directly
related to ARP request/response and make m...
Hello Richie, I can feel your pain..data plane issues are really nasty
expecially when you can control only one side of the moon devices!
Anyway from your description of the issue it seems to me that the
problem it's on mac tables (re)learning and/or...
hi Zeynab, using purely ECMP you cannot have a even distribution of
traffic , think about ECMP distribution algoritms as LACP hashing.. once
an egress path it's been selected the session has stickiness with that
path to avoid all sort of asymmetric r...
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.