Description This article describes an issue where a FortiClient VPN
using SAML authentication fails to connect when the lockdown grace
period for endpoints is set to zero.In this case, FortiClient remains
stuck on 'connecting'. Scope FortiSASE, Forti...
Description This article describes that when integrating an Aruba
Gateway with FortiSASE On Ramp, the IPsec IKE negotiation failed at the
authentication stage. Logs indicated a pre-shared key (PSK) mismatch,
preventing the tunnel from coming up. Scop...
Description This article describes the requirements and process of
configuring SWG SSO when the IDP is behind the SPA Tunnel. Scope
FortiSASE. Solution To configure SWG SSO when IDP is behind SPA, its
needed to configure the following: SWG SSO Config...
Description This article describes how to create a ZTNA destination rule
and assign it to a profile in FortiSASE, where this destination rule
needs to be pushed to a specific group of users only. Scope FortiSASE,
FortiGate. Solution When configuring ...
Description This article describes why 'error Node_check_object fail!
for port xxxx' appears when trying to map users/groups to the SSL VPN
Portal. Scope FortiGate. Solution When trying to map the SSL VPN portal
to users as shown below and clicking a...
Hi Roland, The Source- Destination Strategy will allow the traffic which
is sent from a specific source IP to a specific destination IP to be
sent to the same interface. If you want to create an SD-WAN Rule which
will override the implicit rule. You ...
Please try to set the QUIC to block. Facebook and YouTube use the
protocol to connect to their servers. Please refer to this thread:
https://community.fortinet.com/t5/Support-Forum/Unable-to-Block-HTTPS-Facebook-and-Youtube-in-Google-Chrome/m-p/61928