I have a FortiGate 80E (running 5.6.5) and a 320C FortiAP running 5.6.4.
I want to utilize the wtp-profile setting dtls-policy ipsec-vpn instead
of dtls-policy dtls-enable on my FortiAPs for better performance over
the AP Secure Channel comms. I have...
Scott, this is possible with a VIP. All DNS traffic destined for any
external IP is remapped to a single DNS server you define, seamless to
the user. See the config below to get this to work. This was tested on
6.0.2 and 5.6.x, you will have to test ...
Some settings within the FortiAP Profiles menu in the GUI can influence
this, you can set the radio power to Auto (helps with channel
overlapping if you have a lot of APs) and AP Handoff (the AP will move a
client once the signal reaches a certain si...
Support has directed me to upgrade the FortiGate to 6.0.2 and the
FortiAPs to 6.0.2 firmware. The issue still remains. When the
dtls-policy is set to to ipsec-vpn the FortiAPs remain in a "Connecting"
state. I'll update this when we get to a fix.
Wanted to let you guys know with FortiOS 5.6.3 and two FortiAP 221Cs I
have been able to join all PoE ports into the "internal" hardware
switch. Once you remove all referenced settings (Policies, DHCP
settings) from the "internalA" and "internalB" po...