While integrating FortiMail in our monitoring system I recognised there
are 6 different queue types: DefaultDefault SlowIncomingIncoming
SlowOutgoingOutgoing Slow The difference between regular queue and slow
queue is documented quite well: • Regular...
Since version 5.2.5 Fortinet has added the 'diagnose traffictest'
command. It appears to be an iperf3 running on the Fortigate.But it
seems you can only measure bandwith between interfaces on the Fortigate
itself. I tested some boxes: FWF60D: 314 Mbi...
I'm using FortiManager v5.2.7-build0757 160408. I'm not able to sync
following setting: config log setting set fwpolicy-implicit-log disable
end I can not disable it - if currently enabled on the Fortigate and
vice-versa. Install Preview just says "N...
I cannot Login into the forum using the login button on the start
page.If I click Login nothing happens. Tried different browsers and
environments. http://forum.fortinet.com/login works fine though.
While reading the NSE8 Exam description
(http://www.fortinet.com/sites/default/files/NSE8_Certification_ExamDescription.pdf),
some questions popped up. Apparently the tested topics and firmware
versions can change any time without notice.Is there alr...
Since FortiGate 7.0.2, it is possible to assign different certificates
to different realms.The realm must be assigned in the SSLVPN-Settings
authentication rules.If virtual-host-server-cert is not defined in the
realm configuration, the certificate w...
As far as I know, it only has an impact on hairpain NAT rules.If you
don't match it to the correct interface or set the value to 'any', you'd
have to create a seperate policy for each source-destination
combination. See the DMZ example in following k...
boneyard wrote:heard the same, but quite sceptical they can solve this
on the FortiGuard side. it feels like it needs an actual code change. My
thoughts exactly. I guess they will just make an exception for the
expired DST_Root_CA_X3 certificate and ...
bommi wrote:Go to "config sys global" and check the values for
"cfg-save" and "cfg-revert-timeout". Ah.. this good very will be the
problem :) https://kb.fortinet.com/k....do?externalID=FD30912