FortiGate uses a different interface as a source based on the lowest
index number.Based on local-out traffic, tentatively will be WAN
interface.it a normal behavior refer link :
https://community.fortinet.com/t5/FortiGate/Technical-Tip-Self-originati...
Hi, FortiGate do have this solution but is tediousrefer to link :
https://docs.fortinet.com/document/fortigate/7.6.4/administration-guide/426761/site-to-site-vpn-with-overlapping-subnets
Hi,FortiAP either managed via FortiGate or FortiCloud.There no option
like Cisco AP works as EWC mode.try this link
:https://community.fortinet.com/t5/FortiAP/Technical-Tip-FortiCloud-managed-FortiAP-WiFi/ta-p/190842
Hi !i think there are no right or wrong answer.It will depend on the
environment, equipment's and usage.Higher encryption strength = More CPU
usage = Lower throughputLarger DH groups = Slower VPN tunnel
establishment.