Description This article describes a known issue on v7.6.1 where dial-up
IPsec tunnels using IKEv1 and a pre-shared key (PSK) are unable to rekey
the phase1 security association(SA) when the phase1 key lifetime
expires. This results in affected tunne...
Description This article explains how to prevent malicious SSL VPN login
attempts from locking out user accounts in LDAP or RADIUS by using a
realm to only direct specific authentication requests to the
authentication server. Scope FortiOS. Solution ...
Description This article describes how to resolve invalid certificate
errors seen on FortiClient when attempting to authenticate to an SSL VPN
or IPsec VPN on a FortiGate with SAML authentication. Scope FortiOS.
Solution When attempting to complete S...
Description This article describes how to manually reload external
threat feeds for troubleshooting or test purposes. Scope FortiGate.
Solution When working with external threat feeds, manually reloading the
contents of the feed may be required for t...
Description This article explains the function and behavior of the IKEv2
IPsec phase2 setting ‘initiator-ts-narrow’ and an example scenario where
it can be used. Scope FortiGate v6.4.3 and newer. Solution The IPsec
phase2-interface setting ‘set initi...