I have a WAN connection with a single public IP. Behind the FortiGate
appliance, I have an HAProxy server which farms out the HTTP requests to
the relevant backends based on the HTTP `Host` header. At the moment, I
have two port forwards on the Forti...
I would like to use an Ansible playbook to import an SSL certificate
into my Fortigate appliance and set that newly-imported certificate as
the Server Certificate. Does anyone have any code examples on how to do
that?
I have multiple backend servers and services, all running on different
servers, VLANs and services. At the moment HAProxy is used to proxy
internal and external requests to those services. HAProxy also provides
some load balancing where a hosted serv...
I am having problems getting WDS to work across VLANs. PCs within the
same VLAN can use WDS with no problem, but when I try to use WDS across
VLANs, I get the following error:```304 11.304373 {WDS.IP} {CLIENT.IP}
TFTP 64 Error Code, Code: Illegal TFT...
Hi Everyone, I have an IPSec VPN configured between two locations. The
VPN is working great. I've noticed, however, under Log & Report > Events
> VPN Events that there are a number of "IPsec phase 1 error" messages,
all of which are from unfamiliar I...
The main reason is that I'm trying to get more exposure and
understanding of Fortinet products and their capabilities. I have a few
backends where the source IP list is dynamic, and I was planning on
using the External Blocklist Policy feature (click...
I found that after uploading the certificate to Fortinet, I needed to
update the SSL VPN configuration so that the Fortinet appliance was
using the latest generated LetsEncrypt certificate. After that, I needed
to update the SSO configuration to use <!-- --><!-- --><!-- --><!-- --><!-- --><!-- --><!-- --><!-- --><!-- --><!-- --><!-- --><!-- --><!-- --><!-- --><!-- -->...
Yes. That's the correct page. DNS entry `api.example.local` points to
the IP address I use to access the FortiGate dashboard (e.g.
172.16.0.1). Should I be using a Virtual IP? When I used Virtual IPs in
the past, it was to create a pinhole to HAProxy...
Hi Graham I am new to Fortinet products, so I am so sorry if I am
misunderstanding the documentation, but I found the following article
which made me feel that the feature was available in from FortiGate
6.0.0:
http://docs.fortinet.com/document/forti...
Wasn't this feature introduced in FortiGate 6.0.0?
https://docs.fortinet.com/document/fortigate/6.0.0/handbook/868528/inside-fortios-server-load-balancing