I've done some research on posts (non fortinet forums) that list the
DSCP bits coming from comcast to the local modem/installation as the
lowest priority (0x08) and that to fix this I've typically seen commands
to make iptables essentially convert th...
As a feature request, I would love to see a way to create a
mirrored/reversed policy option when making a policy and for it to be
part of the context/right-click menu on policies.
We would like to be able to scheduled automated full-config backups to
be offloaded to an FTP server. I know the fortimanager has backup
capabilities of configs for its registered devices but we do not really
need a full central management system (th...
Has there been any other progress on this?I have seen some resolutions
here and we have been able to perform some of the WAN Miniport fixes,
but when it happened to us it was a combination of that and then memory
usage. Holy have you managed any prog...
We have a 200B cluster we are scheduling an upgrade for. We currently
have the same SSLVPN issue on 5.2.3 and were hoping for a resolution.
:(Did you run into any other specific problems with the 200B's on this?
romanr wrote:OndrejD wrote:So 5.2.x ba...
Dave Hall wrote:So what you are indicating is wanting the DSCP bits
reset or zeroed on incoming traffic from WAN to Internal? I'm what's
wanting those reset. Or to somehow confirm that their DSCP bits aren't
interfering with the way the FortiGate is ...
emnoc wrote:Explain or provide a topology. But is this correct?
cust_lan>>>>>FGT>>>>>>COMCAST>>>>INTERNET>>>>>cust That topology is
correct, but what I'd been seeing is that packets coming from comcast to
my fortigate are setting that DSCP bit.Ingres...
I think maybe I was unclear. The DSCP bits are those being sent FROM the
comcast, so would be the receiving end from customer perspective. I do
realize that any outgoing data would be rewritten through their
equipment. I'm talking about incoming data...