Description This article describes how to handle an issue where
FortiClient drops connection at 70-80% completion with no error. Scope
FortiGate. Solution If a FortiMobile Token is used, the error manifests
after entering a FortiMobile token code at ...
Description This article describes the issue of HA out-of-sync and when
trying to access the secondary from CLI, the below error is found:
execute ha manage 1 ssh: connect to host 169.254.0.2 port 22:
No route to host Scope FortiGate v7.2 and above v...
Description This article describes how to resolve an issue where the
Outlook application gets disconnected after connecting behind FortiGate,
but works if it is directly accessed. Trying to reinstall the Outlook
application and following a solution f...
Description This article describes an alternate method to decommission a
FortiGate device from FortiCloud support Portal. Scope FortiGate,
FortiGate Cloud. Solution Note: The process detailed below removes
existing firewall licenses and removes the s...
Description This article describes how to block a particular application
on a particular Firewall Policy using an Application Control security
profile. Scope FortiOS all version. Solution Go to the Security Profile
section -> Application Control whic...
@luccap07 Make sure that your web filter is in flow mode and it is able
to identify category. If you see category shows unknown then please
provide screenshot of error and also provide log output.
Hello @ctyctyctctcty , I would suggest to soft restart BGP route as
below and if we still have issue, you can run bgp debug as mentioned:
https://community.fortinet.com/t5/FortiGate/Technical-Tip-BGP-soft-reset-to-refresh-BGP-routing-table/ta-p/19014...
@FTAdmin You need to follow steps as below: 1. You need to add 3rd party
address in phase-2 selectors of main firewall if that traffic is behind
main firewall 2. You can configure SNAT/DNAT for this traffic to moved
traffic from main to third party w...
@piaakit1210 Based on details and requirements , you can configured
firewall policy as you mentioned, From: AnyTo: AnySource:
AllDestination: "Tor-Relay.Node" and
"Malicious-Malicious.Server"Schedule: AlwaysAction: DenyLog Violation
Traffic: EnabledE...