Description This article explains why the CVE-2022-40735 is not a
security issue. Scope FortiGate. Solution CVE-2022-40735 is a variant of
CVE-2002-20001 which is well known property of DHE that it's more
computationally intensive than RSA and ECDHE ...
Description This article describes Historical and Realtime Debug Logs
for determining RCA. Scope FortiGate. Solution Historical Logs: Stored
data about past system events. Covers a wide array of incidents to
understand general trends about the system...
Description This article describes the FortiGate behavior on its various
functions when FortiGuard licenses are expired. Scope FortiGate.
Solution Firewall: Firewall services will be fully functional. High
Availability (HA): HA will be fully function...
Description This article describes how to clear the FortiGate route
cache. For some reason, it may be required to clear the route cache on
FortiGate. Scope FortiGate under Linux kernel 3.6. Solution Route cache
is a Linux kernel component that is con...
Description This article describes how to disable daylight saving time
(DST).This feature is enabled by default but in some cases, the end user
may require to disable it for some reasons. Scope FortiOS 7.2.0 or
lower. Solution To disable the DST from...
Hi, If fragmentation is induced, then most likely we achieve lower
throughputs Please check from the host behind FortiGate that you are
able to ping to an internet IP address without need for fragmentation.
From windows command prompt, you may run th...
Hi, Please check the dns servers configured, and if they are reachable
to this host. Also, try to ping and traceroute from this non working
host towards the dns servers and other internet IP addresses. The
article How to perform initial troubleshooti...
Hi, Issue appears to be specific to AGO website access through one of
the 3 links. Probably, you could check which link provide better access
to the website. You may, for test, create a policy route for the source
IP/machine towards one of the ISP at...
Hi, It is possibly because FortiGate holds the device info for quite
some period of time in history when its idle/unavailable before they are
removed , there is a config in system setting
"discovered-device-timeout" that can be set to a day at minimu...