Description This article explains how to overcome intermittent website
access issues due to DNS latency issues when SD-WAN is configured. Scope
FortiGate, SD-WAN, DNS. Solution When there is high or inconsistent
latency for DNS Servers, the FortiGuar...
Description This article explains how to resolve the VPN login due to
Permission denied for FortiSASE users. Scope FortiSASE. Solution Some
FortiSASE users might not be able to log in to the VPN due to Permission
issues. The sample VPN event logs are...
Description This article describes how to troubleshoot and resolve the
issue of FortiGate not communicating with the FortiClient EMS server,
with the Connection status showing 'EMS unreachable'. The error occurs
when the FortiGate is unable to establ...
Description This article explains how to troubleshoot when there is ZTNA
Denied message in the Flow Debug while accessing the Internal Server,
and there is no ZTNA Server configured. Scope FortiGate, FortiSASE,
FortiClient EMS, ZTNA. Solution There m...
Description This article describes the steps to resolve the SSL
certificate import error on FortiGate. The error generally occurs when
the uploaded certificate has no matching certificate signing request
(CSR). Scope FortiGate. Solution When importin...
Hello @vidmooreda, I believe, you have already checked this
documentation below and that is not service purpose for you as it also
mask details in Fortiview,
https://docs.fortinet.com/document/fortianalyzer/7.6.1/administration-guide/347502/privacy-m...
Hello @jackt, I believe, this might help you,
https://community.fortinet.com/t5/FortiGate/Technical-Tip-Configure-IPsec-VPN-with-SD-WAN/ta-p/209840
Kindly check if this topology matches with yours and make necessary
changes accordingly for failover t...
Hello, WAD debugs would require some extensive checks and it would
better if you create a support ticket with TAC Team and share the WAD
debug file to analyze and let you know the reason for the same. Have a
nice day!
Hello @Mark00 Please be advised that, the the Idle Timeout for SSL VPN
is part of its global settings and hence, it cannot be modified at the
user level or profile level. However, as an alternative, you may
consider creating VDOMs as each VDOM can ha...
Hello @labodd, FortiClient application is very much required on End
Points to synchronize ZTNA Tags and Profiles from FortiClient EMS
through "Zero Trust
Telemetry".https://docs.fortinet.com/document/fortigate/7.0.0/ztna-architecture/19197/ztna-acces...