Hi all, I hope you're well. I am having issues connecting our branch
firewalls to our fabric root FortiGate. All the configuration is correct
as prior to upgrading all firewalls to 7.4.7 this was working just fine.
Post upgrade to 7.4.7, we found tha...
Hi all, I hope you're well. I am migrating a site with existing Cisco
switches to FortiSwitch but will not be using the default FortiLink
interface since the VLAN's are already created under the existing
aggregate interface. Templates have been confi...
Hi all, I hope you're well. I am testing FortiSASE and have setup and
working as I would like however, I would like to run some alternative
IPsec VPNs as well as the SIA into FortiSASE. Within the SASE portal I
have added the IPsec VPN into the "VPNs...
Hi all, I hope you can help me, I have a 2-Tier MCLAG setup with 4 x
FSW443 and 2 x FG80 appliances. I'm having some unusual network
behaviour which let me to investigate and upon running the diagnose
switch mclag peer-consistency-check command on my...
Hi all, I am having issues syncing configuration to my managed
FortiSwitch devices. Currently, I am running FortiOS 7.4.4 and
FortiSwitchOS 7.4.2 and when issuing a execute switch-controller
get-sync-status all I get the below status, MAC and REST AP...
Hi AEK, Please see output below: I'm not quite sure why it is
complaining about illegal characters, it wasn't doing this prior to
upgrading to 7.4.7 so I am hoping this is not a bug that has been
introduced. Let me know your thoughts. Thanks, Dan.
Hi FranceSimao, Thanks for your response. This was my original thinking
however, I did manage to test this and although it didn't affect VLAN
handling and the Cisco switches could still pass traffic without issues
it is still safer to do as you menti...
Hi Sjoshi, Thanks for the update. I will raise a TAC case as I cannot
use the SASE config parameters pushed out as it is using IKE Version 1,
DH 5 etc the configuration is out dated and insecure. Regards, Dan.
Hi Sjoshi, I can confirm the 2nd VPN that I am trying to get working is
being connected to a different on prem FGT and not the SASE VPN. I've
set the profile up whereby I can disconnect from the SASE VPN and then
connect to the alternative IPsec VPN ...