Description This article explains how to use and configure the new
feature for IPv6 HA Reserved management port. Scope FortiOS v7.6.3
onward. Solution Before FortiOS v7.6.2 and lower versions, HA Reserved
management port was possible to configure onl...
Description This article describes how to configure a schedule stitch
which will be triggered during specific period in order to monitor the
BGP. If the BGP which runs over IPsec is down, this tunnel will be
restarted. Scope FortiOS 7.0.x, 7.2.x, 7.4...
Description This article describes how to configure a 'schedule' for a
FortiGate user administrator. Scope FortiGate v6.4, v7.0, v7.2, v7.4,
v7.6. Solution Sometimes it is necessary to have a particular FortiGate
administrator be active only during w...
Description This article describes how to configure a link-monitor on
IPSec Aggregate and disable the routes associated with this aggregate.
Scope FortiGate v6.4, v7.0, v7.2, v7.4 and v7.6 Solution In v7.0.1 the
routing behavior is changed, all route...
Description This article describes how to schedule and disable/enable
FortiGate interfaces. Scope FortiOS v6.4, v7.0, v7.2, v7.4, v7.6.
Solution Sometimes is needed to do a scheduled disable/enable the
interface to reduce the unnecessary usage of spe...
Dear Stilty, Thanks for the update. On FW policy No62 is it possible to
enable the SNAT and use outgoing interface for SNAT, if that is not
possible, to the following test :SSH No1: execute ping-options source
10.91.19.49 execute ping-options repeat-...
Dear Stilty, I have few questions : - When your PC1 is connected, what
IP address is assigned to it? - Because the split tunnel is disabled,
can you confirm that the default route on PC1 points towards FortiGate?
- When you do an ICMP to 10.91.16.101...
Dear hwyoon, For this scenario SSL VPN (tunnel mode, because web mode
does not support ISDB) use an ISDB. More information for ISDB you can
find on the link bellow :
https://docs.fortinet.com/document/fortigate-cnf/latest/administration-guide/613009/...
Hello HANDL_Eric , Did you check the session on the FortiGate which
allows the traffic to/from your FortiManager? If not, try the following
commands : List the sessions where your FortiManager is acting as
destination : diag sys session filter dst XX...
Dear Reshans, The provided routing table in the first screenshot is from
spoke 'SP1'? Make sure the following : HUB -> IPSec->
auto-discovery-sender is enabledHUB -> BGP -> route-reflector-client is
enabled Spokes -> IPSec-> auto-discovery-receiver i...