Hi,Is it possible to grant specific access to a device to and
Administrator ?Here's the situation I would like to be table to grand an
admin full access to ADOMB. However in the function he require to do, he
need to have access to a device within ADO...
Hi Everyone, I would be interested to know how you did implement your
Fortimanager in your environement. Actually I would mostly be interested
to know your thaught about having the FMG publicly visible. I have spin
up an instance of fmg in the cloud,...
Hi All, I know how I can negate a session filter from CLI, but haven't
found a way to do it in the gui. I don't like much the search box in gui
isn't very intuitive/easy to use, but at least it does offer a nicer
view of sessions ;) So anyone know ho...
Hi group,Got a questions whcih I can't figure out / found information..
Let say I apply a shaper that has a shared max BW utilization of 10Mbps
to a shaping policy for inbound/outbound traffic; Does the 10Mbps, is it
a 10Mbps BW utilization combine f...
Hi Everyone, Has anyone succeeded in monitoring VPN using
snmp_exporter/prometheus ? I am trying to query
fgVpnTunTable(.1.3.6.1.4.1.12356.101.12.2.2) but it does fail with error
like this... 800 error(s) occurred: * collected metric
"fgVpnTunEntLocG...
It'll get pushed to all your FGT within the vdom where you created the
sdn object. At least I didn't find a way to restrict to certain fgt,
anyway in our case it didn't really matter. Therefore I guess if you
want to push to only your cloud FGT, you ...
I did setup the sdn connector on the fortimanager and then it
automatically got pushed to the fortigate. Because of the nature of
dynamic learning, each fortigate does require to query/fetch
informations of the objects you'll use.
You may want to look at your admins users. There may be some restricted
host set. In CLi you may look at something like this ... config system
admin user edit "admin" set trusthost1 208.x.x.x 255.255.255.224 set
trusthost2 208.x.y.y 255.255.255.240 s...
More I think about it, more I also think that it would make more sense
to get FGT access the FMG through S2S tunnel. My only concern is that I
would have like to avoid the the initial configuration of S2S tunnel on
the FGT. I wish we could just send ...