Description This article describes how to resolve the
ERR_CERT_COMMON_NAME_INVALID error for a captive portal using Google
SAML for Chromebooks on FortiGate, which authenticates users and
retrieves their usernames. Scope FortiGate. Solution The artic...
Description This article describes the issue of FortiSwitches using
Hardware Switch as an Interface type going offline after updating the
FortiGate from v7.6.2 to v7.6.4. The article provides a step-by-step
workaround to resolve this issue. Scope For...
Description This article describes the issue of ULL interfaces being
down after updating FortiGate to version 7.4.9. It provides a
step-by-step guide to troubleshoot and resolve the issue. Scope
FortiGate. Solution To troubleshoot the issue of ULL in...
Description This articles explain how to determine what caused an IP
address to be quarantined due to DLP (Data Loss Prevention) or content
analysis. Scope FortiGate, FortiProxy. Solution To investigate the
quarantined IP, start by checking the DLP l...
Description This article describes the process of configuring SSL
traffic mirroring with a focus on modifying the Destination MAC address
at the policy level, allowing administrators to accurately duplicate SSL
traffic for analysis or inspection. Sco...
Hi @revat6 , To connect a FortiGate 50G-SFP firewall to a USW Pro Max 24
PoE switch using the Ubiquiti UF-MM-1G SFP, consider the following:- The
Ubiquiti UF-MM-1G SFP is designed to be compatible with Ubiquiti
devices. If the switch's SFP+ port supp...
Hi @qoo55253 , - Ensure that the HA configuration is correct and that
the secondary unit is properly configured to communicate with the
FortiAnalyzer.- Check if the HA management interface is configured and
if the gateway is set correctly on the seco...
Hi @kvsivasakthi In FortiGate, VIP (Virtual IP) lookup is performed
before policy lookup. Here's how FortiGate processes the traffic in your
scenario: 1. FortiGate will first check if there is a VIP configured for
the destination IP address in the in...
Hi @Raj_Pandey - For minimal disruption, upload the new license to the
secondary firewall in Cluster-B first. - This approach allows the
secondary unit to reboot and update without affecting the active traffic
flow.- - Once the secondary unit is upda...
Hi @Raj_Pandey, Yes, you can proceed with uploading the newly purchased
licenses directly to Cluster-B. 1. Upload the new licenses to both nodes
of Cluster-B. This will override the existing temporary licenses and
update the serial numbers accordingl...