Description This article describes why peach orange is seen on the
policy after making the change to the policy. Scope FortiGate. Solution
If a firewall policy is highlighted in peach-orange, it indicates that
the policy was recently modified, but th...
Description This article describes how the ZTNA authentication rule can
be configured even with the SD-WAN. While creating the ZTNA
authentication rule in the firmware version 7.2.11, an error was
encountered that the entry was not found. If the inte...
Description This article describes how to configure Internet Service
database objects for Adobe. Scope FortiGate. Solution To apply an Adobe
ISDB object to a policy from the GUI and CLI: Navigate to the policy and
objects: Create a new policy for the...
Description This article explains how to check the changes done on the
GUI and can be seen on the CLI, this can be helpful during the
configuration changes as well as for the audit. Scope FortiGate.
Solution Run the below command on the FortiGate CLI...
Description This article describes how to change the DNS server IP
address. Scope All FortiGate. Solution By default, the FortiGate will be
added with the default FortiGuard server IP address on the DNS settings.
FortiGuard DNS servers are used by Fo...
++ASIC offloading is disabled on respective firewall policy.This is
because sessions offloaded by Network Processors (NP6, NP6Lite) will not
be captured by sniffer. Note: this make cause the high cpu, to prevent
cpu overutilization, create a more spe...
You can try to delete the logs and then upgrade it,execute log
delete-allIf the above doesnot work, then flash format the device and
upload 5.6.13 firmware and then the configuration and then upgrade it.
If still not working, then you can open a tick...
You may also check the below
links:https://community.fortinet.com/t5/FortiGate/Technical-Tip-FortiGuard-is-not-reachable-via-Anycast-default/ta-p/190041https://community.fortinet.com/t5/FortiGate/Technical-Tip-FortiGuard-Services-are-Unreachable/ta-p...