Description The article describes, how to add an overlapping subnet on a
different interface(s) and resolve routing issues. Scope FortiGate.
Solution To use the same subnet on more than one interface, it is
required to enable overlap-subnet Use the f...
Description This article describes how to handle errors when negotiating
FCP protocol version with server- ERR_NETWORK. Scope FortiEMS server
behind the FortiGate firewall. Solution While deploying the update
package on the FortiEMS server, the follo...
Description This article describes how to enable DLP on FortiGate using
the GUI. Scope FortiGate version 7.6.0. Solution In the newer FortiGate
versions such as 7.4.x and 7.6.x, the DLP option is not available under
Security Profiles and Feature Visi...
Description This article describes the error: Web Page Blocked-Access
Denied for newly registered domain. Scope All FortiGate versions.
Solution If a domain name is not included in the database and the URL is
seen by the FDN server for the first time...
Optimization of the collector agent can be done as follows: 1.) Changed
the Max worker thread to 576 on logic- Max Worker Threads = 512 +
((Logical CPUs − 4) × 16)2.) Set log level to Debug and log size to 100
MB.3.) Cache user group results to 60
Refer to the link below for more information
https://community.fortinet.com/t5/FortiGate/Technical-Tip-Blocking-ICMP-type-3-messages-Destination/ta-p/193807
Apologies for the late replies:It could be possible that your ISP is
blocking packets on port 500. diagnose sniffer packet any 'host and port 500' 4 0 l
Related documents for more information
https://community.fortinet.com/t5/FortiGate/Technical-Tip-Understanding-the-FSSO-Working-DCAgent-Error-Too/ta-p/332274https://community.fortinet.com/t5/FortiGate/Technical-Tip-Tips-to-optimize-FSSO-Collector-Age...
You can also refer to this article for more information
https://community.fortinet.com/t5/FortiGate/Technical-Tip-IPSec-dial-up-full-tunnel-with-FortiClient/ta-p/189452