Hello everybody, we are actually using on a Fortigate (running 7.0.x OS)
the SSL Offloading Feature for checking inbound-Traffic (!) to an
Web-Server located in our dmz: config firewall vip edit "Loadbalancer
SSL www.example.org" set comment "for IPS...
Hello everyone, I would like to use the integrated Windows 10 IKEv2
tunnel for a connetion to a Fortigate (100E, v6.4.4) with
authentification against my Windows Active Directroy (Server 2019). With
a local user on the Fortigate my tunnel is running ...
Hello, we are actually evaluating a Fortimail Box. We are using the box
in gateway mode for filtering incoming Mails. -> MX-> fortimail -> my
mail server The mailboxes itself are located on "my mail server". Now I
would like to login to the fortimail...
Hello, I have a weird problem with webfiltering, certificate inspection
(NOT deep inspection) and google.com on a Fortigate 50E, v5.4.4 When I
try to open google.com I get an ERR_CONNECTION_CLOSED - on several PCs
with FF,IE,Chrome - all the same err...
Hello, i have been asked for a Layer2 Site to Site VPN (I would not like
to discuss an alternative - at this moment - because this is the
technial requirement of the customer..). I have done some research here
in the discussions and found several sta...
Hello, same problem here today.After some investigating it turns out
that this is an MTU / Fragmentation issue. The MTU for IPV4 pakets on
DS-Lite Connections is ~30 Bytes lower.Lowering the MTU on the network
interface of the device is one option (n...
Hi! Thanks a lot, that works. I have to use two internal IP-adresses -
but that´s not the problem. The problem - only using one external adress
- was solved.The SSL-Certificate was a Wildcard-Cert - so, this was
fine. I guess this is the only way to ...
Hi!this did not work, my backend Server complains about a mismatch
between SNI und HTTP-Header:Hostname www.example1.org provided via SNI
and hostname www.example2.org provided via HTTP are different The method
@lol described has worked. But it´s not...
Hello, I have just installed the NPS Server and got it working with
IKEv2 and authentification against my Active Directory.It would be
interesting if my unterstanding regarding LDAP is correct? Sebastian
Hello, self-reply ;) It seems the problem is that the passwords are not
stored clear-text in the AD - but the firewall needs them in clear text
for this authentification type.Enabling storing the passwords in clear
text is not an option (so I will ch...