Description This article describes how FortiGate does 'TLS Active
Probe'. Scope FortiGate. Solution Diagram: Client IP: PORT =
10.0.6.8:52934 FortiGate SNAT IP:PORT = 10.0.5.60:52934 FortiGate TLS
Active Probe IP: PORT = 10.0.5.60:1298 <----- The IP ...
Description This article describes a scenario where 'Last Used' and 'Hit
Count' do not increase, despite having ongoing sessions. Scope
FortiGate. Solution 'Last Used' and 'Hit Count' may not be updated
despite a working firewall policy: A firewall p...
Description This article describes when a transparent proxy policy with
the action "DENY" may allow packets to be transmitted. Scope FortiProxy
with transparent proxy policy earlier than v7.0.21, v7.2.14, v7.4.9, and
v7.6.3. Solution The feature call...
Description This article provides one of the reasons why FortiProxy is
not able to send decrypted traffic despite proper configuration. Scope
FortiProxy. Solution A feature called 'Decrypted Traffic Mirror' is
intended to decrypt encrypted traffic an...
Description This article describes how to learn Client-IP from the
X-Forwarded-For header and apply learned Client-IP to proxy policy.
Scope FortiGate. Solution When Application Gateway (AGW) sits behind
FortiGate and sends traffic to FortiGate, all ...