Description This article describes how to set up and maintain an IKEv2
Site-to-Site IPsec VPN between a FortiGate and StrongSwan on Ubuntu
Linux. Scope FortiGate. Solution Once the configuration is complete, the
VPN tunnel may not establish as expect...
Description This article describes how to configure an IKEv1
site-to-site VPN tunnel between a FortiGate and a StrongSwan VPN gateway
on a Linux system. Scope FortiGate. Solution On Linux Install
StrongSwan: sudo apt-get updatesudo apt-get install st...
Description This article describes an issue observed on FortiGate, where
the ipv4-split-include setting in an IPsec Phase1-interface
configuration disappears after modifying the associated address group.
Although the configuration appears intact via ...
Description This article describes the error 'AADSTS76023: The signature
of the received authentication request is invalid, please contact the
administrator to resolve the issue' when connecting to the FortiSASE
VPN. Scope FortiSASE. Solution The use...
Description This article describes the common issues encountered when
uploading FortiConverter-generated configuration file to FortiGate
devices, and provides a step-by-step approach to troubleshoot and
resolve these problems effectively. Scope Forti...
Hi, yes it can be done using sdwan and if sdwan is not setup and policy
route can be used Refer:-
https://docs.fortinet.com/document/fortigate/7.6.2/administration-guide/413288/sd-wan-rules-overview
https://community.fortinet.com/t5/FortiGate/Technic...
Hi, In fortinet if you want to communicate among the different interface
then you need to setup firewall policy. Please create firewall policy
from port3 to port1 and port2 and vice versa and allowed the required
subnet. Refer:-
https://docs.fortinet...
Hi, Take packet capture on ether frames. diagnose sniffer packet any
'ether proto 0x8890' 6 0 l Refer:-
https://community.fortinet.com/t5/FortiGate/Technical-Tip-FortiGate-HA-Heartbeat-packet-Ethertypes/ta-p/197807
Hi , Its better to reach out to fortinet NSE training team and raise a
ticket with them so that you can get better clarity.
https://helpdesk.training.fortinet.com/support/solutions/articles/73000571109-recertification
Sign in and can raise the ticket
Hi demein, If you have not setup port forwarding under VIP config even
the outbound traffic takes the external IP of the VIP but it is better
to setup the sdwan rule so that you have the control to route the
traffic for specific source towards specif...