Description This article describes a known issue with IKEv2 dialup IPsec
VPN that does not select the correct peer when using aes256gcm-prfsha
proposal under phase1 settings on FortiGate. Scope FortiGate. Solution
Consider an example where there are ...
Description This article describes that FortiGate sends multiple phase2
selectors when traffic is initiated from FortiGate, although a single
phase2 selector is configured. Scope FortiGate. Solution Consider phase2
selector configured on FortiGate as...
Description This article describes how to resolve an issue when
FortiExtender configuration is lost following a firmware upgrade on
FortiGate-50G-DSL. Scope FortiExtender, FortiGate. Solution When
upgrading FortiGate-50G-DSL from FortiOS v7.0.17 to F...
Description This article describes the FortiGate compliance with BSI
TR-02102-3 (2025-01). Scope FortiGate. Solution The following IKEv2
proposals running on FortiGate are considered compliant with the latest
cryptographic recommendations outlined in...
Description This article describes a Kernel panic observed on
FortiGate-7x. Scope FortiGate-7xF. Solution When FortiGate-7x is powered
off by running the 'execute shutdown' command, the following Kernel
panic is observed. FortiGate-71F # exec shutdow...
hi @ganesh_karale , It sounds like an unexpected behavior. Please open a
ticket with Fortinet TAC and share the configuration along with the
screenshot of the error for further investigation.
Hi @aguerriero, Please disable offloading on firewall policy and see if
the issue persists. If possible, please upgrade to FortiOS 7.4 version
as well as it could be something specific on 7.2.
Hi @RolandBaumgaertner72 , well it totally depends how you would prefer
to have the setup. Without SD-WAN, you can modify the distance/priority
settings as explained in the below link.
https://community.fortinet.com/t5/FortiGate/Technical-Note-Routin...
Hi @RolandBaumgaertner72 Thank you for reaching out the Fortinet
community. If you prefer one WAN link over another, you can configure
SD-WAN rules to prioritize traffic. SD-WAN rules are checked from top to
bottom (first match).
https://docs.fortine...