Description This article describes how to enable the WAF in policy.
Scope FortiGate. Solution In the GUI, go to System -> Feature Visibility
-> Search for WAF.By default, the Web Application Firewall option will
be greyed out as below: It must be ena...
Description This article describes how to ban an IP through the
Automation stitch. Scope FortiGate, FortiAnalyzer. Solution Create an
automation stitch: login to GUI -> Security fabric > Automation. Select
Create New -> Provide the Name. Select Add t...
Description This article describes how to track and manage multiple
versions of configuration files. Scope FortiGate. Solution To manage
configuration revisions on a FortiGate, follow the below: In the Gui,
select the user name in the upper right-han...
Description The article describes how to change the VPN profile name
without clearing the reference. Scope Fortios 7.4.2. Solution Starting
from 7.4.2, there is a new feature implemented to change the VPN tunnel
name without clearing/deleting the ref...
Description This article describes how to enable and configure ICAP.
Scope FortiGate. Solution By default the ICA option is disabled in the
firewall, it has to be enabled from the feature visibility. Navigate to
System -> Feature Visibility: If it is...
Hi, To block a specific port on a FortiGate device, follow these
instructions: Access the FortiGate web interface. Go to Policy & Objects
> IPv4 Policy. Select Create New to set up a new firewall policy. Adjust
the following settings: Source Interfac...
Hi,Basically the administrative access to to get the firewall access
using the https/http, ssh, ping, telnet.General administrative access
refers to the overall access and permissions granted to administrators
for managing the FortiGate device. Where...
Hi Kalliem, The behavior of a FortiGate device when a license expires
can vary depending on the specific type of license and the
configuration. In general, here's what you can expect: Grace Period:
Some FortiGate licenses come with a grace period. Du...
Hi Abdal, You may use the option Keep Alive in the phase2 configuration.
The option is to keep the tunnel active when no data is being processed.
Please refer the below
link:https://community.fortinet.com/t5/FortiGate/Technical-Tip-Using-the-IPSec-au...
Hi Mehul, Please note that the ISDB object will not support split
tunneling. It is necessary to manually build an address group and
include all of the Teams addresses. Regards,Babitha M