Description This article describes how to fix the error 'Session is in
BLOCK state. Drop the packet'. Scope FortiGate. Solution By default, the
service 'ALL' is set to use protocol type 'IP', with protocol number 0
meaning any. However, if the protoc...
Description This article describes how to save changes on the Webfilter
Fortiguard Categories on v7.2.8. Scope Fortigate v7.2.8. Solution When
changing some FortiGuard categories on the device to alter the action on
a category, it reverts to 'Allow' ...
Description This article describes that Internal users cannot connect to
SSL VPN when a limit access coverage to specific hosts or specific
geological locations is set. Scope FortiGate. Solution Part of the SSL
VPN security hardening is to limit acce...
Description This article describes that reply-to option on the email
server is no longer available on 7.4.4 and later. Scope Fortigate v7.4.4
and later. Solution On FortiOS 7.4.4 and later, the reply-to has been
set automatically to DoNotReply@fortin...
Description This article describes how to recover the previous firmware
and config using the console after the FortiOS upgrade. Scope FortiGate.
Solution Scenario: In some cases, after the upgrade, the device is
unable to boot or unable to login. As ...
Hi @unknown1020, From the logs, you can see what is the exit interface
based on the firewall policy you created for SSLVPN to WAN connection.
If you are referring on the public IP being used, you could check it on
the users device and use IP checking...
Hi @unknown1020 , If the video became accessible by setting the tcp mss
value to 1400, you may add 40 for the TCP (20) and IP (20) header. On
the guide it started on 1500 which you can deduct 48, TCP header (20) +
IP header (20) + ICMP packet (8).
Hi @spinovski, Are you using VIP or IP pool on your setup? There is a
changes on behavior per firmware branch, kindly check this article for
information.
https://community.fortinet.com/t5/FortiGate/Technical-Tip-IP-pool-and-virtual-IP-behavior-change...