Hello team! I have a new question about FortiClient EMS.I need to
authenticate FortiClient users with an active directory domain and with
2FASo far, I could add the active directory domain in my FortiCllient
EMS, and I can use the domain users when I...
Hello team!! I read the first 8 chapters of the "FortiClient EMS 7.4
Administrator Study Guide". After this I started to open the FortiClient
Cloud, and created some different objects there. But playing with my
FortiClient Cloud, before set this in p...
Hello team! I hope you are fine!Recently a user reported me a problem,
after some troubleshooting, I find something new for me:This is one of
these enents, in SSL section: date=2025-06-04 time=09:56:47
eventtime=1749041807646108870 tz="-0300" logid="...
Hello team!! We have 2 Fortigates 100F in HA, working fine In these
Fortigates, we have 2 IPsec site to site VPNs working fine We need to
create VPNs for FortiClient, to some users to have connectivity to
office from diferent external sites. I will t...
Hello team! I enabled automatic firmware upgrade yesterday in many
Fortigates for mondays, between 23:00 and 00:00 hs.Today I saw that no
one was updated.Looking up in one of them, I see the following log
generated in the time range specified for the...
Thank you Atakan Atak for your answer!! Now I have 2 new questions:1) We
have many users, if we need to duplicate AD users into Fortigate, when a
new user is added or deleted, I need to do the same in the Fortigate. Is
there a way to accomplish this ...
Hello, Sorry, I just add 2 new questions.1) Is this possible to
authenticate AD users with 2FA without any other appliance than
Fortigate and FortiClient
EMS?https://docs.fortinet.com/document/forticlient/6.2.8/ems-administration-guide/357909/logging...
AEK, thanks a lot!!! 1) Ok, I didn't know. 2 & 3) I though I read this
in the study guide, that you can use ZTNA apps for on-fabric too4)
Sorry, dumb question. I dont even try with the plus sign, hehehehe5) It
doesnt make sense to me, that FortiClien...
Hello, Thanks for your response!!Sorry, I missed this.Is this secure to
allow "encrypted client hello"?Maybe, there are another way than allow
all connections with encrypted client hello. Thanks in
advance.Regards,Damián