DescriptionThe Fortigate IPsec VPN phase 1 is set to initiate the IKE SA
negotiation by default. The option is available to disable it and
respond only with the IKE SA initiation from remote peer side.This
article describes how to disable this option...
DescriptionThis article describes how to verify if SIP session helper or
SIP ALG are used to process the SIP traffic.SolutionIn case the SIP
session helper is being used instead of the SIP ALG, one can use the
#diagnose sys sip command to determine i...
DescriptionThis article explains how to use Automatic Address Creation
for Attached Networks.For all interfaces set to a LAN or DMZ role, a new
option is available to automatically create an address object for the
connected network. This feature help...
DescriptionIn a source or destination NAT security policy that accepts
SIP sessions, it's possible to configure the SIP ALG or the SIP session
helper to preserve the original source IP address of the SIP message in
the Session Description Protocol (S...
DescriptionThis article describes how to troubleshoot the fact that a
FortiNAC running on HA (Control Server/Application Server Pair), which
requires a reboot for maintenance, does not perform a
failover.SolutionImportant: For L2 HA configurations, d...
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.