Each tunnel needs a unique peer-id. Here is a tech tip:
https://community.fortinet.com/t5/FortiGate/Technical-Tip-How-to-use-Peer-IDs-to-select-an-IPSec-dialup/ta-p/192292
Here you go: First - create the address objects: config firewall address
edit "*.apple-cloudkit.com" set type fqdn set fqdn
"*.apple-cloudkit.com" next edit "*.apple-livephotoskit.com" set type
fqdn set fqdn "*.apple-livephotoskit.com" next edit "*.a...
From ISDB Team: iCloud hosts part of the service on third-party CDN
platforms, which subject to dynamically assigned IP addresses. ISDB is a
static IP-based database service, which cannot handle dynamic IPs
directly. It is suggested to use FQDN Addre...
Apologies- yes you can clear sessions with cli and create filters to
clear much more precisely;
https://community.fortinet.com/t5/FortiGate/Technical-Tip-Using-filters-to-clear-sessions-on-a-FortiGate/ta-p/191368
if you do not specify a filter Diag s...
You should be able to create an account on the Fortinet support portal.
From there you can download the VMs. Not all products have a free
evaluation period when you deploy them. I would suggest reaching out to
your local account team to discuss a pro...