Description This article describes how to resolve the issue of when the
SNMP walk does not pull information about certain interfaces. Scope All
supported versions of FortiOS. Solution FortiGate assigns a unique SNMP
index to each interface for SNMP m...
Description This article describes the reasons for logs that may keep
piling up every time someone connects to the FortiClient. Scope
FortiGate v7.4.5. Solution Users may see a large volume of 'FortiClient
registered' events from random users under S...
Description This article describes how to resolve and establish a VPN
connection: 'The VPN server may be unreachable. (-5053)'. Scope All
FortiClient. Solution While troubleshooting SSL VPN errors, there may be
instances where the configuration on th...
Description This article explains, with scenarios, how to allow traffic
from SSL VPN to IPsec when the remote side is only accepting traffic
from a specific subnet or IP address. Scope All supported versions of
FortiOS. Solution Allowing SSL VPN user...
Description This article describes a scenario when the FortiClient
dial-up tunnel keeps disconnecting for some users. Scope FortiOS v7.0 or
higher. Solution There might be some instances when the FortiClient
dial-up tunnel keeps disconnecting for som...
You can run the debug when trying to connect on the FortiGate di vpn ike
log filter rem-addr4 x.x.x.x <-----Public IP address of the
clientdiagnose debug application ike -1diagnose debug enable Then, based
on the output, you should be able to see if ...
You can follow these instructions as per this kb
https://community.fortinet.com/t5/FortiGate/Technical-Tip-Authentication-fails-with-clock-skew-errors-in/ta-p/222360
specifically this part config user saml edit <> set clock-tolerance <-- (0-300, 15 ...
Hi Dave, We have an API available for Assesst management, but you need
access to the Fortinet Developer Network, Please read through this
document to get access and more information about this Platform-
https://docs.fortinet.com/document/fortigate/7....
Hi Ramadan, Usually, there is an option to save all logs or the security
Events in the firewall policy. So if you keep the configuration to the
default, which is only security events, then it will only save those
events, but if you like to see all th...
Hi, You can use Winbind but keep in mind that Winbind is used to provide
MSCHAPv2 authentication only. If using a different scheme, such as
EAP-TTLS/PAP or EAP-TLS, configuration is not required. More information
can be found here
https://docs.fortin...