Hello, I'm trying to configure an IPsec tunnel to replace ssl-vpn, but i
can't make split tunnel to work. I have split-tunnel enabled with just
an internal network allowed, and a policy that explicity allows traffic
to that network. The problem is, o...
Hello, I'm trying to deploy DPI on a Fortigate80F v7.0.17. Right now
everything works as expected but one thing, the "Trusted CA List". I'm
unable to inspect anything that has a certificate from there and i
haven't found a way to ignore the list, so,...
Hello there, We've been having some issues with clients using
Forticlient after upgrading to Windows 11. FortiClient is on last
version 7.0.2.0090 Client stops at 80 % showing a "Server may be
unreachable" -14.Logs show everything fine and stops afte...
Good day, I'm setting up a Tacacs.net server to authenticate all our
FGTs and it's working fine.But, when a diferent (TacacsUserGroup) tries
to log in a FGT which doesn't have configured it's
(TacacsAdmin_profile), it logs in as a super_admin instead...
Hi, I' m triing to do a dialup tunnel between forticlient and Fortigate
50B behind a Cisco Router. This router has a GRE Tunnel configurated, so
I can' t map UDP port 500 to Fortigate. My question... Is possible to
change destination port 500 on fort...
Hello, This is the output of route print on my pc once i'm connected to
the vpn:Destino de red Máscara de red Puerta de enlace Interfaz Métrica
0.0.0.0 0.0.0.0 10.51.244.11 10.51.244.10 25 0.0.0.0 0.0.0.0
192.168.49.1 192.168.49.44 35 10.51.244.10 25...
Oh, i already have 7.4.3, it's on config mode too.this is ipsec config
and the policy: edit "TEST-IPSEC" set type dynamic set interface "wan1"
set peertype any set net-device disable set mode-cfg enable set
add-route disable set xauthtype auto set ip...
Sorry for my late answer, i hadn't been able to check this. I have
removed everything there, and now it inspects some websites it wasn’t
inspecting before. But even now, I can still access sites like Amazon,
YouTube, etc., as if packet inspection was...