Description This article describes how to source NAT into an outgoing
interface IP when a VIP exists. Scope All supported versions of
FortiGate. Solution Virtual IPs can affect an outbound NAT, even when
they are not selected in an outbound firewall ...
Description This article describes how to generate a CSR and import an
admin SSL/TLS/HTTPS certificate using the CLI. Scope All supported
versions of FortiGate. Solution Generate CSR and import admin
SSL/TLS/HTTPS certificate using CLI. Connect to th...
Description This article discusses VoIP(Specific) traffic to use only 1
wan connection in SD-WAN. Scope FortiGate. Solution Topology: Currently,
there is no feature that can exempt specific networks not to using the
implicit SD-WAN rule. So, it is po...
Description This article discusses Dialup VPN over the wireless network
for an additional layer of security Scope FortiGate. Solution Topology:
Wireless client (192.168.1.2)----Tunnel mode
SSID-----FortiAP(10.10.10.2)----------(10.10.10.1)Fortigate(w...
Description This article describes how to restrict the maximum number of
concurrent users connected to SSL VPN. Scope FortiGate. Solution
Restrict maximum concurrent users connect to SSL VPN under System ->
feature visibility and enable SSLVPN realms...
@tungnx59 SDWAN does load balancing when it hits the implicit rule
otherwise SDWAN rule will decide the outgoing interface based on various
Interface selection strategy. 1. set load-balance-mode
[source-ip-based|weight-based|...] : it decide the stra...
Hi @tdh2112 Please provide more information about the topology. Why is
there a need to configure VIP on wan1 to wan1? We usually use VIP to
access resources on private IPs. It seems like you want the firewall to
inspect before reaching the server.Che...
@tdh2112 Here are some questions that I have: If I see traffic coming to
the correct IP and Port in the packet capture, but do not see traffic in
the Forwarding Log, does that indicate a problem with the VIP, or with
the Policy? Ans: Check MAC addres...
@stefan-ohg Are you trying to connect to a VPN when connected to wifi or
mobile internet? try other option to see whether it makes a difference
or not. Debug suggests the tunnel went down because iPhone deleted the
SA.2024-07-24 16:28:13.335441 ike V...
@Tannu1986 If you want Fortiswitch and FortiAP to receive IP address
from the interface: fortilink then make sure native vlan on port22 is
fortilink and APs in bridge mode. I hope it helps.Regards, Rahul Kaushik