Description This article describes a known-issue with firewall object
synchronization in the Fortinet Security Fabric. Admins may notice the
following symptoms related to this issue: FortiGates in the Security
Fabric will display a warning indicating...
Description This article describes the pros and cons of using the 'any'
option for the Virtual IP (VIP) Interface setting (aka extintf in the
CLI), including scenarios where it can be useful as well as potential
behavioral pitfalls to be aware of. Sc...
Description This article describes a known issue with the SFP+
interfaces (specifically port9 through port24) on the
FortiGate-1000F/1001F model. This issue does not affect the SFP28
interfaces (port25 through port32), nor does it affect the QSFP28
i...
Description This article describes the behavior of the Trusted Hosts
feature and how it interacts with Single Sign-On (SSO) Administrators on
the FortiGate. Scope FortiGate, SAML. Solution First, a primer regarding
key behaviors of Trusted Hosts and ...
Description This article describes a known behavior where TCP port 4500
will always appear when performing network port scans on the FortiGate.
Note that this article applies to FortiGates that are running FortiOS
7.4.2+ and that also have at least o...
Hi Faiza_Emam_Delhi, can you clarify where (FortiGate, FortiSwitch
directly, FortiManager, etc.) and on what firmware you were able to
perform these steps? I checked on FortiOS 6.4, 7.0, 7.2, and 7.4, and
none of them have the capability that you are...
I recommend checking out these Community KB articles for SSL-VPN and
IPsec:https://community.fortinet.com/t5/FortiGate/Technical-Tip-Enabling-split-tunnel-feature-for-SSL-VPN/ta-p/198108https://community.fortinet.com/t5/FortiGate/Technical-Tip-Enable...
Unless I'm missing something, it looks to me like Source NAT isn't
turned on for Policy 15, the SSL-VPN to Internet policy.You're using a
full-tunnel SSL-VPN (set split-tunneling disable), so all traffic is
shuttled over the VPN in this case, but you...