Are you trying to configure the FortiClients so that when they're
connected to the corp network then the VPN is disabled? Ifso you can do
this if you have the FortiClients managed through EMS. EMS allows you to
create 'on net' and 'off net' rules to ...
Yes this feature is now available on FortiGates running 7.4.1.
https://docs.fortinet.com/document/fortigate/7.4.0/new-features/376839/support-switching-to-an-alternate-fortianalyzer-if-the-main-fortianalyzer-is-unavailable-7-4-1
I think the reason may be because what the policy package in the FMG
will be will not match exactly what could be on the FGT once you import
it. If you run the install wizard for the policy package and view the
changes that will be made I would bet t...
Most times I see this because of the incorrect Common Name Identifier.
Try to use sAMAccountName for the Common Name Identifier in the LDAP
server settings on the FortiGate.
Yes there is; you can use EMS to push out the SSL certificate to all
registered FortiClients. Under Endpoint Profiles > System Settings there
is an option to install CA certificate on client.