Description This article describes a scenario when attempting to
configure a VPN pre-shared key (PSK) on a FortiGate device by copying it
from another firewall’s configuration file, but doing so results in a
‘password too long’ or ‘command failure’ e...
Description This article explains how to check the group association of
an IPsec VPN user when groups are defined in the firewall policy. Scope
FortiOS. Solution A network administrator may need to verify the group
association of an IPsec VPN user fo...
Description This article explains an issue where SLA metrics for a
configured performance SLA are not visible unless a specific SLA is
selected. Scope FortiOS 7.4, 7.6. Solution The performance SLA under the
SD-WAN tab does show the packet loss, Late...
Description This article explains how to get the Remote IPsec user IP
address, which can be used by the network admin for analysis purposes.
Scope FortiOS. Solution Unlike SSL VPN, the FortiOS GUI does not show
the IP address assigned to the Remote I...
Description This article describes the reasons for an 'invalid address
selected' error when adding an address under the remote access IPsec
tunnel under IPV4 split tunnel. Scope FortiGate v7.6.3. Solution In the
VPN Wizard and Tunnel dialog, all remo...
@aspnovac FortiClient compatibility on ARM architecture on Windows
devices is expected to be merged in FortiClient version 7.4.2. But there
is no expected release date for this version yet.
@BEAZUERO Please make sure you are making the API call for the same
profile you see in the GUI. If so, feel free to open a TAC case for
further verification.
Hi @erichard For the test.mydomain.com:8080 NAT configuration, you may
need to make sure the DNS record points to the backup internet when WAN1
is down. If you are using fortiDDNS service then the fortigate will
automatically update the DNS record wi...
Hi @Pablo1 Please verify if ha-direct under snmp community is disabled
config system snmp community edit 1 set name "abcd" config hosts edit 1
set ip x.x.x.x 255.255.255.255 set ha-direct enable <----- Set to
disable set host-type query next end