Description This article describes the issue when the WAN1 ISP port
shows as up but is not passing traffic on SD-WAN with HA A-A. Scope
FortiGate. Solution Issue: Wan1 is showing as inactive, but the
interface status appears up. FW01 # diagnose hardw...
Description This article describes how to fix the system interface error
in HA on VM setup. Scope FortiGate. Solution Issue: The setup is HA
Active-Passive (A-P) in a virtual machine (VM) environment. When HA goes
out of sync due to a system interfac...
Description This article explains how to configure the Per-IP traffic
shaper. Scope FortiGate v7.4 and v7.6. Solution To create a per-ip
shaper via GUI on FortiOS 7.6.x version, the option to create a per-ip
shaper is on the top-right, as per the scr...
Description This article describes how to make only IPv6 visible for the
IPsec VPN Remote Gateway. Scope FortiGate. Solution Go to the IPsec
phase1 settings, enable the 'Local Gateway' option, choose the option
'Specify' and enter the particular IPv4...
Description This article describes the limitations of hiding the IPv4
address and only making the IPv6 address visible for the Remote Gateway
in the SSL VPN setup. Scope FortiGate. Solution Assume the following
scenario: Public-------SSL VPN--------F...
Hi , Please refer the below document. Tried to ping between two public
ip continuously with repeatedly with packet 100 and check any packet
loss Also please test the path MTU from FortiGate site.From a PC behind
the FortiGate, please do the below:pin...
Hello. FortiGate dial-up IPsec tunnels can be configured as IKEv2 with
Radius authentication. Note that EAP will need to be configured even if
LDAP is used, as IKEv2 requires EAP. LDAP will be a result of a
'translation' from RADIUS EAP to LDAP if th...
Hi,Yes, it is possible to extend the expiry timeout for
LDAP-authenticated users using FortiGate's native captive portal. please
refer the below document :
https://community.fortinet.com/t5/FortiGate/Technical-Tip-Increase-the-Captive-portal-user-ret...
Hi configure sdwan performance sla it will check the measure latency
along with packet loss and jiter.you can use sdwan spillover
https://community.fortinet.com/t5/FortiGate/Technical-Tip-SD-WAN-usage-based-spillover-load-balance-method-s/ta-p/282227
Hi, yes , if you are using sdwan you can use sdwan performance sla you
can achieve this or you can configure normal link monitor it will
supoort multiple destination