On a Fortigate 50E (6.2.15) there are 2 WAN ports active, mainly for
redundancy and load balancing. SSL-VPN specifies that it is listening on
both over 443 and Authentication/Portal Mapping has 2 entries, one
specific for a Fortigate Local Admin acco...
A Windows user was disabled at a client site and I was asked to verify
whether he was still present and operational in the Firewall (and the
SSL VPN users) and, if he was, I should disable/remove him. First of all
I found no means of getting the curr...
You are right, it was something outside the FortiGate. One of the
routers, the one attached to WAN2, had trouble port forwarding 443 to
the internal network as it was. That, combined with another relic from
the past created the final problem. Which w...
Allow me to elaborate a bit on the details of the issue. * I have
created 2 connection profiles on the FortiClient VPN, one for each WAN
Static IP* When both WANs are enabled I can connect over both profiles,
when WAN2 is disabled I can connect over ...
Well, Toshi I believe you are on to something here. I did find a line
like the one you mentioned but I only see wan1 and not wan2, if that
should be the case with a failover scenario. S* 0.0.0.0/0 [1/0] via
10.0.1.254, wan1C 10.0.1.0/24 is directly c...
Hi Yurisk, I can not tell the type of integration. If it is a creation
parameter I would not know anyway since I was not the one who set this
up. Whatever the case may be, I do not seem to find the Collector Agent
GUI in order to follow your instruct...
I probably do not relay info in the correct manner. Here are screenshots
from the firewall. Under "User & Device" > "User Groups" there is an
"SSL_VPN_Users_Group" whose Member is the LDAP Server "Windows_AD" Under
LDAP Servers there is only one Serv...