Description By default, FortiGate firewalls drop multicast packets with
a TTL (Time to Live) value of 1, which is a common value used for
link-local multicast traffic. This article describes that it is possible
to configure the FortiGate to forward m...
Description This article describes that when attempting to use multicast
routing or while executing multicast routing-related commands on
FortiGate, it is possible to encounter an error message 'Failed to get
VR/VRF Context Information' indicating th...
Description This article describes how to change the DNS protocol used
by FortiGate to initiate DNS requests. Scope FortiOS. Solution DNS over
TLS (DoT) is a security protocol that encrypts and encapsulates DNS
requests and responses using the TLS pr...
Description This article describes how to change the SD-WAN Service rule
order using CLI. Scope FortiOS. Solution Dragging the policy to modify
its order in the SD-WAN rule via GUI is achievable via CLI, as seen
below. Original SD-WAN service rule or...
Description This article describes the support of EMAC in HA setup.
Scope FortiOS. Solution The enhanced MAC VLAN is handled as a physical
interface in high availability (HA) deployments. It will be assigned a
unique physical interface ID, and its MA...
Hello, In FortiGate SD-WAN VPN setup, it is common to have different IP
addressing configurations between the hub (central) and spoke (remote)
sides. The specific IP addressing scheme chosen depends on the design
and requirements of the network. On t...
Hi, By default, local out traffic relies on routing table lookups to
determine the appropriate egress interface for establishing the
connection. However, certain types of local outbound traffic offer the
option to select the egress interface based on...
To avoid the IPsec tunnel from getting terminated due to no continuous
interested traffic on FortiGate, you can configure the Dead Peer
Detection (DPD) feature. DPD monitors the IPsec connection and sends a
series of probe messages to the remote peer...
It appears that there is a memory leak in the WAD user info history
daemon, and opening a TAC Case will help you in eliminating the issue
and optimizing the device resource.
WiFi Location Map is a feature on FortiOS lets you import custom maps or
floor layouts and then position FortiAP devices on the map. Wifi Maps
display the FortiAP devices' real-time state and warnings on the map.
This function provides a visual repre...