Hello, I have a IPSEC tunnel which is showing UP but I cannot ping or
access the needed website though the tunnel. I am connecting to a City
VPN which uses a Checkpoint Firewall. They require me to Source Nat to
protect them from subnet overlap. I ha...
I have a Fortigate 110C veriosn 5 build 228 with FortiAP 221B version
FP221B-v5.0-build039. I notice among other things that the AP stops
working about every 35 minutes. In the logs I see this. 19 11:43:28
ap-fail AP WAPD-HALL failed. Then it rejoins...
Hello all, I have a Fortigate 110c Firmware version 5 build 228 and
cannot get the syslogd settings to save. I have used the following CLI
commands config log syslogd setting set status enable set facility
local7 set csv disable set server 192.168.2....
I have a 110c v4.0,build0328,110718 (MR2 Patch 8) in switch mode and am
having some issues configuring a Cname in the DNS. I have DNS working
with our domain example.com and all Cnames such as test.example.com
resolve just fine when pointed to an A R...
I thought about that too. I will try that. I think if I use another
public IP I can actually do this in route mode using a VIP. Thanks for
taking the time to respond. I will let you know how it works out.
Thanks everyone for your help. I don' t have a spare and this is my last
Fortigate purchase. The " forward traffic" logs no longer work with the
most recent firmware upgrade. I do wish FG would conduct better QA. I
might take this down over the weeke...
That feature is available on the 100A but not on the 110C. Here are my
filter settings Does not work with syslog
------------------------------------- set app-ctrl enable set attack
enable set dlp enable set email enable set forward-traffic enable se...
Hmm, not sure what you mean by build a pcap. I got the raw logs that our
syslog server is receiving. This is directly from the software and not
Wireshark date=2013-08-14 time=13:39:56 devname=ESC-Primary
devid=FG100C3G045116649 logid=0001000014 type=...
Well I take that back, now that I am actually on the computer (not
remotely logged in) I can work with wireshark a bit more. I do see that
syslog messages are being sent to the host. Neither IView or Kiwi seem
to be able to decipher then. I changed t...