Hi team Customer deployed AD FS behind FortiWeb (reverse proxy mode).
One of the requirement is to add X-MS-Proxy in the HTTP header, the
value is proxy hostname (FortiWeb Hostname) I checked the Fortiweb
document and looks like we only add X-Real-IP...
Ok Toshi, I discussed this with engineering, here are the outcome: 1-
Later FOS will not let VLAN switch member to be a trunk, you can't set
trunk enable if the port is a member of VLAN switch. It means a trunk
port is a standalone port.2- A port whe...
Hi Toshi Yes, what I see is this feature is not stable, with possible
bugs in the latest firmware. For example, if you have a port1 in a VLAN
Switch and set trunk enable. Then when you reboot the FortiGate or even
reload the config, the port1 will be...
Hi Toshi For the FGT that supports vlan switch, you need to enable
"virtual-switch-vlan" so the config you referenced will work, provided
that you need to set trunk on port1 and port2. The document says 'set
trunk enable' is optional but I see it req...
It may be late for you but for other viewers. FortiGate 100F supports
virtual-switch-vlan config system globalset virtual-switch-vlan
enableendThen you can create a new virtual-switch, add port1, port2 and
set vlan id to this vswitchconfig system vir...