Description This article describes how to enforce AES256-SHA1 in
FortiGate with an explicit proxy setup. Scope FortiGate, Windows Domain
controller. Solution It is assumed that explicit proxy configurations
are already completed in FortiGate and the ...
Description This article describes how to enable users to re-provision
their FortiToken Mobile or use temporary email or SMS tokens if the
previously provisioned mobile device is lost or unavailable. Scope
FortiAuthenticator, Self-Service portal, rep...
Description This article describes how to resolve these two scenarios
with SSL VPN in FortiGate. - A new domain account with the following
options enabled: 'User must change password at first logon'. Or - The
password of any existing domain user acco...
Description This article describes the steps to create FSSO connector
and enable FSSO Encryption between FortiAuthenticator and FortiGate
using certificates. Scope FortiAuthenticator and FortiGate Solution -
FortiAuthenticator uses TCP Port 8000 for ...
Description This article describes how to allow Smartcard PIN
authentication using FortiAuthenticator agent version 4.x. Scope
FortiAuthenticator Agent, Windows 10 & Windows 11. Solution In this
case, FortiAuthenticator Agent 4.x is installed on Wind...
Hi Fabio, Are you using Forticlient for SSLVPN or IPSEC VPN ? Anyways in
both cases debug logs on FortiGate will help you to give better insight
of issue. For SSLVPN diag debug resetdiag debug console timestamp
enablediag debug app fnbamd -1diag debu...
Hi Tutek, Please try the steps mentioned in the below KB article.
https://community.fortinet.com/t5/FortiGate/Troubleshooting-Tip-User-status-Not-Verified-on-the-FSSO/ta-p/195014
regards, Sheikh
Hi wismail, As you have mentioned that you are using "External
connector", so are you using FSSO Agent on Domain controllers or do you
have Collector Agent installed on a member server ? Did you configure
any Groups filtering ? Is there any other fir...
Hi, to check whether the Forticlient service is UP & running # systemctl
status forticlient.service If it is stopped, you can try to start it
with following command. # systemctl start forticlient.service regards,
Sheikh
Hi AhmedAyman99, Please also find some KB article regarding
Fortiauthenticator clustering, that might help you in implementation and
understanding.
https://community.fortinet.com/t5/FortiAuthenticator/Technical-Tip-FortiAuthenticator-HA-cluster-overv...