Description This article explains the case sensitivity nature of the
group name in the HA configuration. Scope FortiGate. Solution One of the
conditions to establish the HA between 2 FortiGates is to have the same
Group name. The Group name is case-s...
Description This article explains how the FortiGate handles the DNS
Dynamic update packet in proxy mode. This type of DNS packet is
generated when a user executes the command 'ipconfig /registerdns'.
Scope FortiGate. Solution In Windows machines, the...
Description This article explains how to interpret the SMART data to
identify the power cycle count in a FortiGate Firewall. Scope FortiGate.
Solution When the command 'diagnose sys logdisk smart' is executed in
the FortiGate Firewall, it displays th...
Description This article describes why the policy is not updating the
hit and bytes count in a policy-based VPN. Scope Policy-based VPN.
Solution The firewall is configured with a policy-based VPN with the
'set inbound enable' command. Below is an ex...
Description This article describes details about the challenge ACK and
how FortiGate handles that packet. Scope FortiGate. Solution In the TCP
handshake generally, 3 packets are exchanged for the connection
establishment and they are either SYN, SYN-...
Hi, - Is there any change in the network connection such as wifi going
down and coming up? - Is the Auto Connect enabled in the FortiClient
configuration? Regards, Shiva
Hi, - Are you having access of the firewall which is acting as the SSL
VPN gateway or you are trying to block the communication in a
passthrough fortigate? - If you are trying to block the communication in
a passthrough fortigate then you can create ...
Hi, - Was the issue seen in GUI or CLI? - Were you able to see the
policy with the correct source and destination in the CLI by running the
command "show firewall policy"? Regards, Shiva
Hi, For which type of traffic you are observing the error? Are you
seeing ip-conn error for UDP/DNS traffic or ping traffic or TCP traffic?
default session timeout is 3600 seconds. But if the session is not
established and it is half open state then ...
Hi, - What is the FortiGate version you are running? - Is the Geo IP
database updated or outdated? You can refer the below KB to verify if
you have the latest GeoIP database.
https://community.fortinet.com/t5/FortiGate/Technical-Tip-How-to-update-the...