Are there any workarounds to the webfilter policy where sites are
accessed by customer IP? We have issues where customer sites are not in
DNS, just public IP. The webfilter blocks them due to unrated category.
Yes, I know we can whitelist the IPs, bu...
Hello, I am looking for clarification in whether I need to migrate to
ZTNA for remote access to do a basic posture check? I am looking to see
if we can block an incoming SSLVPN request from a user has their local
antivirus not running or is not up-to...
When do you need to put a gateway for SDWAN interfaces? The default when
adding a new interface member to the SD-WAN group is 0.0.0.0. If you
have the default route set already in your routing table, do you still
need to specify the gateway in SD-WAN...
We have an issue at our org where some machines have the "free"
FortiClient VPN installed on their machine with existing connection
profiles to random sites. The issue is that we are pushing FortiClient
Zero Trust and during the install process, it r...
I was testing my transceivers and I tried to get the transceiver to step
down from 10 to 1g on x1 of my FGT200F. No matter what I set it to in
the GUI in FMG, it always resorts back to auto. I tried changing it on
the FGT200F directly, but now every ...
I just stumbled upon this thread and have the same issue. I've opened
two tickets with Fortinet TAC and even my ISP. Both say neither is their
issue. My ISP even replaced their equip and had good RFC test. I have
the same setup as you 10G inside 1G o...
Awesome, didn't see this option. Are all Forticlient versions supported
or just the free one? I tested this by disabling my AV and forcing the
host check to look for it, and it still accepted the connection.
Opened a case with support. According to the support engineer, my issues
were related to a bug with my SSO user not being 'full admin' even
though it is set to super in the GUI. You need to put this under your
SSO user in the CLI. I didn't ask for th...