Hello team!!! I hope you are fine!!We have here, 2 kind of VPN users
trying to access different resources on different VLANs (Behind the same
Fortigate), we need, for example, the following:* User Group 1: Can
access LAN but not DMZ* User Group 2: Ca...
Hello team!! Is there a way to create an asymmetric per IP traffic
shaper or a traffic shaping policy with different shapers for each
direction?For example, if we need to configure 10 Mbps for download per
IP and 5 Mbps for upload per IP, is this pos...
Hello team!!! I hope it goes well for you!We have 2 different "trunk"
interfaces (With different VLANs on each one).For example:* VLANs 10, 20
and 30 on port1* VLANs 40, 50 and 60 on port2Now, we need to add the
VLAN 100 in both trunks interfacesBeca...
Hello team!!! We manage many Fortigates in different sites and recently
upgraded all to 7.4.3After this, we have problem accessing to some
fortigates through some wan interfacesFor example I can access through
wan2 but not through wan1, or in other c...
Hello team!!! I hope you are fine!I have the following question, if I
configure an sd-wan rule with the "maximize bandwidth" strategy,
configuring in the cli, the "set hash-mode inbandwidth", how fortigate
determines the interface with most available...
Hello again!!I have tried with FortiClient VPNs, but when I add a user
group in the policy, the VPN stop working (Again, the traffic does not
match any policy)So, to test, I wanted to follow what @pminarik said,
create an IKEv2 VPN, but I dont know h...
Hello!I think you are right!The group membership seems that doesn´t
propagate to the firewall policies!If I select an address object and a
VPN user group in the firewall policy, when I try to access from a VPN
client, no policy is matched and I cant ...
Thanks!!!We have many Fortigates in different places, syncronizing with
Active Directory and we use AD Groups or local groups (With AD users) in
different firewall policies, so I think this should work.I could try
IKEv2 for next deployments, now we h...