Description In case of lost access to the admin account with super_admin
profile, follow the steps to restore the admin account with super_admin
profile. Scope All FortiOS Solution To begin, let us understand how it
is possible to run into such a sit...
Description This article describes how it is possible to block a certain
country and allow the rest of the world to connect to SSL VPN. Scope
FortiOS. Solution Step 1: Go to Policy & Objects -> Addresses, select
'Create new', select 'Geography' as th...
Description This article describes how to verify the SSL VPN connection
type of connected users. Scope FortiGate. Solution Step 1: Add an 'SSL
VPN' Monitor which is under the Network Section as described here:
Technical Tip: Monitor tab from GUI. Ste...
Description This article describes how to modify route preference using
Local-Preference Attribute in BGP. Scope FortiOS. Solution Local Peer:
10.9.26.94 configurations: On this FortiGate, there are two BGP peers:
10.9.17.42 and 10.9.26.163. get rout...
Description This article explains why FortiGate replies 'Telnet to local
telnet server is not allowed' when trying Telnet to an IP. Scope
FortiGate. Solution Example Output: FGT-61E # exe telnet 192.168.100.1
443 Telnet to local telnet server is not ...
Hello GIAdmin, Good day! I have tested with the above configuration and
sending traffic between subnets in the same spoke VCN but the FW does
not do policy validation, it sends the traffic directly. Could you
please confirm if the traffic is hitting ...
Hello ATryingEngineer, Good day! This is correct that FGT will send auth
request to all the remote servers [ldap + radius] and will accept the
one that replied with ACCEPT the fastest.Here is the reference:
https://community.fortinet.com/t5/FortiGate...
Hello Jason1683416, Good day! Could you please confirm which browser you
are using for authentication? FortiClient in-build or external browser.
Please try to switch to the other or try using FortiClient 7.2.4.0972 to
see if that helps.Thank you!
Hello Minotaur, Good day!Thank you for feedback. ahh, I just realized
you have VLANs under NPU links. Honestly, I would have opened a TAC case
so an engineer can live troubleshoot or lab this up IF REQUIRED. Thanks!