Hi all,I formatted a fortigate with 6.4.6 and air-gapped it for testing.
I'm trying to update the onboard AV/IPS signatures. I've done this
before on previous versions with no problem. I double-checked the
directions at
https://docs.fortinet.com/docu...
I have multiple dial in VPN tunnels for remote users. They were set up
with independent IP pools that don't overlap for users to get a local ip
when connected. It's approximately some /26 ranges inside some unused
/24s. I'm wondering if we've made th...
In EMS 6.2 it looks like a feature was introduced to synchronize web
filter profiles from a fortigate to help reduce the double work. It
looks like that function only synchronizes the web filter profiles. Is
there an easy way to also synchronize the ...
We've been using SD-WAN to load balance across 4 internet connections on
version 6.0.x no problem for a long time. We recently updated to 6.2.x
and have seen nothing but problems that seem to be related to sessions
hopping from one ISP to another too...
So I've got a silly question. In short- what is the most efficient way
to bridge multiple FGT interfaces. Hypothetically, you have a large
handful of EOL FGT60Cs, and someone suggests using them as "dumb"
switches/hubs temporarily instead of buying a...
The huge benefit in allowing access from the outside is that you can
publish updates to profiles and all clients will get it regardless of
their on-network status. Our big fear was ending up with a device that
was marooned due to some change down the...
We started with a domain-joined EMS and then migrated to one that is not
on the domain and is sitting in a public-facing DMZ. It's working for us
no problem. As mentioned you may need to allow some ports through
depending on what the server is doing....
I put it on my home 60E. First impressions so far- it works. No deal
breaker crashes yet. A bunch of quality of life updates like more color
schemes and snappier UI are helpful. The migration of interfaces to
zones and related features is promising a...
i double checked the config and it looks like the vpns in question
aren't actually using a dhcp, but i guess i could set a DHCP relay to an
internal server. the config of one of the phase1s looks like the below
config vpn ipsec phase1-interface edit ...