IPsec tunnel from our firewall (Fortigate 100F) to Azure basically
works, as soon as we set up NAT or activate NAT rules in Azure, the
tunnel breaks down or the traffic does not work. My concern is that we
are probably not passing through the NAT ran...
Hi! How can i implemented a policy for that case: I often have the
situation that segments are passed behind the firewall that were
previously routed on a core. As a result, the required communications
are not known and you first have to authorise ev...
What is the process of converting production standalone firewall to
cluster? during the process will there be any interruptions to prod
traffic and will this need downtime?
But how can i make the HA connection to the other Fortigate because they
are separated physically? The Internet connection in the company was
lost. And i had to restore the firewall with an backup which i had made
before the Cluster configuration.
I configured a VLAN Interface on the HA Link. Because the other
Fortigate is not in the same rack and building. Then i walked through
these steps which you wrote but with only one HA Link:Go to System >
HAEnable Active-Passive HASelect 2 HA interface...
Start by taking a fresh backup of the production FGT.Then, on the node
which is already under production, do this:Go to System > HAEnable
Active-Passive HASelect 2 HA interfaces, e.g.: ha1 & ha2Set a high
priority value, e.g: 140Set group id, passwor...