Description This article describes how to configure the FortiGate with
an External Connector using the STIX/TAXII protocol. AlienVault (aka
Alien Labs Open Threat Exchange) is the threat-feed provider used in
this article as an example, and so the st...
Description This article describes the authentication-related
limitations that an administrator will encounter when configuring the
Wireless SSID for WPA2-Enterprise and Local Authentication on the
FortiGate, rather than using the RADIUS Server authe...
Description This article describes how to configure a FortiGate Rugged
unit to act as a DNP3 proxy server. With this functionality, the
FortiGate-Rugged can receive TCP/IP-based DNP3 polls from a Master
station and act as a network proxy for a Remote...
Description This article describes a commonly-observed situation
regarding first-time setup of SD WAN routing. When SD WAN is set up, it
is common to see administrators assign all of the SD WAN-related member
interfaces (IPsec tunnels, MPLS links, br...
Description This article describes a feature on the FortiGate that will
allow FortiClient SSL-VPN users to automatically reconnect to the VPN in
the event of a temporary drop in network connectivity. This feature is
particularly useful when administr...
I recommend checking out these Community KB articles for SSL-VPN and
IPsec:https://community.fortinet.com/t5/FortiGate/Technical-Tip-Enabling-split-tunnel-feature-for-SSL-VPN/ta-p/198108https://community.fortinet.com/t5/FortiGate/Technical-Tip-Enable...
Unless I'm missing something, it looks to me like Source NAT isn't
turned on for Policy 15, the SSL-VPN to Internet policy.You're using a
full-tunnel SSL-VPN (set split-tunneling disable), so all traffic is
shuttled over the VPN in this case, but you...