Description This article describes how to configure the FortiClient
Windows app on a Windows machine. Scope FortiGate, FortiClient. Solution
Install the FortiClient SSL VPN application from the Windows store. Once
the application is installed on the ...
Description This article describes the steps for resolving the error
'Cannot enable central-nat error with firewall policy using ippool'.
Scope FortiGate. Solution While trying to enable the Central NAT setup
on the firewall there should not be any r...
Description This article describes the possible reason for seeing error
-9999 while creating a new tunnel or modifying an existing tunnel. Scope
FortiGate. Solution This error is usually seen when the configuration
being applied on the IPSec tunnel i...
Description This article describes the possible reason and solution for
the HA cluster failing to authorize on root fabric device with the error
'Cannot authorized device in Fabric'. Scope FortiGate. Solution While
trying to authorize the HA cluster ...
Description This article describes how to set up automation to block
invalid login attempts for an IPsec dialup tunnel with an automation
stitch. Scope FortiGate. Solution To block the invalid login attempts on
IPsec dialup tunnel, check for VPN even...
Hello @Sozo_Admin,Can you please review the below document and confirm
that you have all the needed settings enabled on the firewall for
implicit deny
logs?https://community.fortinet.com/t5/FortiGate/Troubleshooting-Tip-Unable-to-see-implicit-deny-lo...
Hello @danyal,If you are looking to limit the access to specific hosts
on SSL VPN then you need to define it only under the VPN settings and
not on the firewall policy Please review below document as it goes in
detailed steps to apply the same
https:...
Hello @damianhlozano, * For example, If I configure "set
sla-fail-log-period 30", this means that if WAN1 is failing, while the
status does not change, a log should be record, each 30 seconds,
right?That's correct * Is there a way to keep more than 1...
Hello,You can try to run the debug commands with public IP address of
your test machine as that will give you clear idea on what is missing on
the configuration part.# diagnose debug reset# diagnose debug flow
filter addr x.x.x.x [public IP address o...
Hello,Please review the below guide as it seems that "Save Password" is
only available on Forti client managed by EMS (Paid Version) and can be
pushed through VPN profile.
https://docs.fortinet.com/document/forticlient/7.4.0/administration-guide/4377...