DescriptionThe article recommends that the HA management IP address is
not used for managing FortiGate cluster over FortiManager.Do not use the
"ha-mgmt-interface" IP address for adding FortiGate cluster to
FortiManager as managed device. The HA mana...
Description An understanding of how routes are populated in FortiClient
SSL VPN Tunnel Mode is useful in order to avoid configuration issues
where some networks cannot be accessed due to missing routes. Scope
FortiClient SSL VPN + FortiOS 4.3, 5.0, 5...
Hello, As you can find in FortiManager Compatibility
charthttp://docs.fortinet.com/uploaded/files/2902/fortimanager-compatibility.pdfFortiOS
5.6.2 is targeted to support in an upcoming FortiManager release -
FortiManager 5.6.0 only supports FortiOS 5...
Hi,Just to clarify - you don't need to create zones on FortiManager, you
may as well use "Interface" with whatever name you want (like DMZ,
OfficeLAN, DCLAN etc) and dynamically map them to physical interfaces of
the FortiGate.Zones are best used if ...
Hi, You can use CLI script like this: config firewall addressedit
"address_name"unset colornextedit "another_addressunset colornext...end
Probably the easiest way to obtain a list of objects in an ADOM is to
use "execute fmpolicy print-adom-object" c...
Hi Sridhar, Please go to:config webfilter profileedit profile_name
config ftgd-wf config filtersshow After "show" command you will see some
output. Search for "set category 32" - it does not have to be under
"edit 32" - it may have another number. Yo...
Hi, This error is due to invalid webfilter category that should not
exist in FortiOS 5.xLook in the FortiGate config for something like:
conf webfilter profile edit profile_name conf ftgd-wf conf filters (...)
edit 32 set category 32 set action warni...