Description This article describes the reason for the different assigned
IP addresses to the clients that are not a part of the tunnel address
range. Scope FortiGate. Solution The configured range in which the
tunnel users will receive IPs is 10.212....
Description This article explain how to allow all the website using
static url filter when the option FortiGuard category based filter is
disabled. Scope FortiGate. Solution Enable the URL filter option under
the Static URL filter. Select 'Create New...
Description This article describes how to troubleshoot the traffic block
using the access control lists. Scope FortiGate v7.0, v7.2, v7.4.
Solution Access Control Lists (ACLs) on FortiGate Devices: ACL blocks
IPv4 and IPv6 packets on specified interf...
Description The article describes how to allow traffic dropped by a
particular WAF signature. Scope FortiGate. Solution This article helps
to configure the WAF profile: Technical Tip: How to configure a Web
Application Firewall (WAF) to protect a web...
Description This article describes how to troubleshoot an issue where
the client is unable to map to the expected SSL VPN portal despite the
configuration being in place correctly. Scope All FortiOS Version.
Solution FortiGate does not honor or perfo...
Greetings! The same subnet range can be configured after enabling the
subnet overlap setting. # config system settings set
allow-subnet-overlap [enable/disable] end Reference Document:
https://community.fortinet.com/t5/FortiGate/Technical-Tip-Enable-...
Greetings, From the note, you get this error "Unable to establish the
VPN connection. The VPN server may be unreachable. (-14)" This is
related to the reachability issue. Try to ping the remote address
configured in the sslvpn setting on Forticlient ...
Greetings! Remove all the references for interface "internal1".
References like firewall policies, route, DHCP server, and IP address on
interface "internal " and interface "internal1" should not be part of
any other software or hardware switch. Rega...
Greetings! The SNAT in a Fortisase is enabled,
https://docs.fortinet.com/document/fortisase/24.3.20/administration-guide/40667/remote-vpn-user-identification
Create a support ticket to disable SNAT. Regards! If you have found a
solution, please like ...
Greetings! In this case create a port forwarding on ISP router,
https://www.hellotech.com/guide/for/how-to-port-forward ISP router
should translate the traffic from public IP to private IP of FortiGate.
Thank You!