Hi FortiWeb adminsFortiWeb 7.2.x.What is the best method to achieve
URL-based routing on FortiWeb in reverse proxy mode, when using a policy
with HTTP Content Routing.E.g.:Client requests www.domain.com/app1 ->
route to back-end server 1Client reques...
Hi EMS adminsIn FortiClient EMS 7.4.x, what is the difference between
database backup and zip backup?Is it the same? May I understand zip
backup contains DB backup and EMS settings? What is the recommended
backup?Searched in documentation but couldn'...
Hello FNAC adminsOn the support portal, image download, under FortiNAC-F
> v7.00 > 7.2 > 7.2.9, I found this file:
FNAC_install_7.2.9_build0166.bin.Made some searches but couldn't find
anything about it.Do you have any idea?Is it for manual installat...
HI EMS adminsI have an EMS installation (VM deployment) initially was at
7.4.3.When I updated it to EMS 7.4.4 I was able to create FortiClient
7.4.4 package installer.Then when I updated it from EMS 7.4.4 to EMS
7.4.5 it doesn't propose to create For...
Hi EMS admins When I update from EMS 7.4.4 to EMS 7.4.5 I have the
following error.Upgrade EMS: Err:1
http://apt.postgresql.org/pub/repos/apt noble-pgdg InReleaseUpgrade EMS:
The following signatures couldn't be verified because the public key is
not...
HelloSure it is technically possible. If you use UDP (default), on
ext-fw just forward the incoming UDP-500 and UDP-4500 from WAN to the
int-fw (using DNAT or just routing depending on the case), and allow
outgoing UDP-500 and UDP-4500 from int-fw to...
Hi PatrickInvitation can be disabled, so you can register client without
invitation code if the client is domain joined.Also as far as I know MFA
is not (yet?) supported with user verification on registration.
Unfortunately sharing firmware is against Fortinet support contract
policy.On the other hand FGT 110C last firmware is 5.2.x, which is very
old and almost useless in current networks. Even if it is for lab you
will not going to get much out of it.
Hi StefanFollowing some research I found that even on CLI this is not
possible.https://docs.fortinet.com/document/fortimail/7.6.4/cli-reference/938081/profile-tlsI
think it means when you want to enforce certificate check then you have
to assume that...
Are the hosts on the subnet 10.60.100.0 singable from your FGT?In
traffic logs do you see the related traffic is accepted? If so then I
guess it show the sent packets is positive number and received is zero
bytes, right?Run the below commands and the...