Am I right in thinking that setting set username-sensitivity enable for
a local LDAP user just removes the set username-sensitivity disable line
from the user's config? set username-sensitivity enable doesn't persist
in the config when I enter it, an...
HiI'm trying to figure out why my transparent proxy policies are
allowing traffic when they shouldn't. I have a transparent proxy policy
restricted to a single IP and FSSO group for testing, yet when I disable
the policy, the test device/user still h...
Hi We've been having spotty internet connectivity since adding a 4G
interface ( a Teltonika device in pass-through mode) to the SD-WAN on
our 200E running 7.2.10. The three fibre interfaces in the SD-WAN are
only running 20-30 % utilization generally...
HiYesterday I had to disable full SSL inspection in our proxy policies
due to poor browsing performance. Fortigate 200E running 7.0.15 No
policy changes were made, and user numbers, session numbers and
interface throughput are average for daily use. ...
Hi We have a SSLVPN Web portal on one Fortigate. When using it to get to
resources behind a tunnel on another Fortigate, it seems to NAT the
traffic despite the policy having NAT turned off. FG2 sees the source
address of traffic to AWS being 192.168...
Found the issue. It was remote LDAP groups in firewall groups causing
case-insensitivity:https://community.fortinet.com/t5/FortiGate/Troubleshooting-Tip-Issue-with-MFA-bypassed-with-an-LDAP-user/ta-p/330183
OK, then they're definitely be homogenous.Yeah, the 4G performance is
rubbish compared to the fibre connections. I can use the poor latency in
the performance SLA threshold to keep it unused except as a last resort.
Thanks Toshi :)
Unfortunately nothing was revealed looking at the crash log.I upgraded
the firmware to the Fortinet recommended version, 7.2.7, and the problem
has resolved itself. Thanks for taking the time to reply, I appreciate
it.