Description This article discusses the reasons and resolutions for a
specific session not being offloaded to NPU after upgrading the firmware
version to v7.4.3. Scope FortiGate v7.4.3. Solution When enabling
WebFilter on a Flow-based policy many webs...
Description This article describes the configuration of a policy-based
IPsec VPN between FortiGate and Cisco. Scope FortiGate. Solution HUB
Configuration: Configure IPsec VPN at a HUB: config vpn ipsec phase1
edit "Hub-to-Branch_1" set interface "p...
Description This article describes how to set up configuration of a
hairpin NAT with a specific interface and how to restrict it to a
particular interface. Scope FortiGate. Solution A hairpin NAT is
employed when there is a need to grant LAN users ac...
Description The article describes how to grant access to a server hosted
on an IPv6 address to LAN users located on an IPv4 subnet. Scope
FortiGate. Solution Below is a scenario explaining the configuration
steps for Hairpin Net with NAT 46: Enable...
Description This article discusses the root cause of the traffic log
'replay packet(allow_err), suspicious'. Scope FortiGate. Solution If a
user gets the log message 'replay packet(allow_err), suspicious' under
the forward traffic log, it could be ve...