Hello, I have set up a firewall policy to test our FSSO functionality. I
have noticed that when the FSSO group corresponds to a user DN it works
fine, however, if it corresponds to a Global Security group, it does not
work. Below is the firewall poli...
Hello, We have some hosts that are blocked from the internet. However,
we want them to communicate with Microsoft Defender. I have followed
https://community.fortinet.com/t5/FortiGate/Technical-Tip-Allow-Windows-Defender-in-firewall-policy/ta-p/28485...
Hello, I have made a deny policy on the Fortigate 7.4.7 and assigned
some FQDNs as source on LAN to WAN communication. However, I realized it
doesn't work. When I tried the policy with the IP addresses, it worked
as it should. Then, I executed below ...
I have installed FortiClient VPN on two Win 11 machine, one on a domain
the other one as a separate workstation. First, I don't know why but you
need to add the FortiClient to the firewall either manually or through
some gpedit modifications, crazy e...
Hello, I'm working on a pre-configured Fortigate firewall and seeing too
many logs under VPN Events, most of them SSL VPN alerts. I realized
these logs are coming from other countries than the intended country.
After looking for some solutions to min...
After talking to Fortinet Support Team, below solution looks to work for
us.https://community.fortinet.com/t5/FortiAuthenticator/Technical-Tip-Windows-event-IDs-used-by-FSSO-in-WinSec-polling/ta-p/189910
Hi Aek, As I mentioned, it works when the user group owns the user
directly. However, I would like to get it work with active directory
Global Security.
Hi @dingjerry_FTNT,I understand that public DNS servers are not able to
resolve local FQDNs, however, I couldn't find a document to show me how
to use the local DNS server while keeping those FGT DNS servers for
external URLs.Also, I'm looking for a ...