Description This article describes how to configure split-dns for a
split-tunnel IPsec dialup vpn with FortiClient on FortiGate to resolve
an internal domain. Scope FortiGate v7.2, v7.4, v7.6. Solution Topology:
client –internet-- FGT-kenobi –ipsec--...
Description This article describes what to do when the TS Agent FSSO
users are unable to resolve DNS. Scope FortiGate v7.2, v7.4, v7.6. TS
Agent. Solution Here, the TS Agent user information is present in the (#
diag firewall auth list) output, TS Ag...
Description This article describes what to do when client devices behind
a CGNAT network fail to connect to FortiSASE VPN. Scope FortiSASE.
Solution Follow this KB ARTICLE to perform a capture using Fortinet
Support Tool on FortiSASE: Technical Tip: ...
Description This article describes what is required to access internal
HTTP/HTTPS resources with 'apptype web'. Agentless ZTNA Access Proxy
portal is a new feature as of 7.6.1: ZTNA agentless web-based
application access 7.6.1 To initiate the configu...
Description This article describes how to activate FortiToken Mobile
without Email or SMS. Scope FortiGate v6.4, v7.0, v7.2, v7.4, v7.6
Solution On the CLI, run the following commands: diagnose debug reset
diagnose debug application alertmail -1 diag...
is your device able to ping the remote gateway or if the remote gateway
used is an fqdn, are you able to resolve the dns of it? Check whether
the configured sslvpn port on your FortiClient is correct or not. Run
these debugs on your Fortigate and rep...
hello, upon getting that error message after upgrading to 7.4.8 through
the console, is your Fortigate able to boot successfully or just gets
stuck at that error message? That error message is certainly not normal
and I'd suggest you to open a suppor...
You may opt to use link-monitor as well:
https://community.fortinet.com/t5/FortiGate/Technical-Tip-Link-Monitor-Explained/ta-p/197504it
behaves similarly to sdwan's performance sla
Yes, this can be achieved using sdwan. Ensure both of these ipsec
tunnels are configured with sdwan rules and performance sla so that
failover works seemingly.
https://community.fortinet.com/t5/FortiGate/Technical-Tip-Configure-IPsec-VPN-with-SD-WAN/...