Hi,I'm trying to forward some traffic (PBR) via different interface (GRE
Tunnel). When I have a default route via port1 (with better metric) it
doesn't work: Local-FortiGate # get router info routing-table allRouting
table for VRF=0Codes: K - kernel,...
Hi, can someone clarify one thing as I'm lost: I use only firewall
policies, no antivirus, no IPS and no Application Control. With below
settings what happens when FW enters kernel conserve mode? Does it
accept new sessions? Does it process existing ...
Thanks for your comments. I think a dedicated collector per site is not
a good idea with 8k sites, I think it will be aggregated approach with
one collector per X sites , in the same geographic region. I was curious
what is the maximum value. FortiGa...
Maybe I wasn't clear in my answer. I know it's based on AD group not on
specific users. Assuming I have 10000 groups, which represent different
locations. I plan to add 1 or 2 entries (AD groups) for each FortiGate,
what means I need to add up to 16k...
Hi thought the value adgrp shows how many AD groups you can have on
particular device. In my case there is AD with >5000 groups and to save
smaller devices I don't want to send them all logged users, just some
groups. With close to 8000 devices I hav...