Description This article discusses how Authentication Keepalive is
causing IPSEC VPN with SAML Authentication to fail. Scope FortiGate.
Solution When enabling Authentication KeepAlive causes the IPSEC VPN
with SAML not to connect.After the end user e...
Description This article discusses the debug log error when the license
is not updating when FortiGate on HA has a different account
registration. Scope FortiGate. Solution Beginning in late February 2025,
there is a change in how FortiGuard backend ...
Description This article explains why local-in-policy is missing after
upgrading to v7.4.6, v7.4.7 or v7.6.1. Scope FortiGate v7.4.6, v7.4.7,
v7.6.1. Solution If the local-in-policy use interface was part of the
SD-WAN zone, this policy will be delet...
Description This article describes how to determine the Virtual IP ID
used by incoming traffic. Scope FortiGate. Solution Use debug flow
commands to debug the packet flow with show iprope and function enable.
diag debug flow show iprope enable diag d...
Description This article describes the causes of HTML formatting loss in
the SSL VPN Web Portal after upgrading to v7.0. Scope FortiGate v7.0+.
Solution The issue occurred when the SSL VPN login page replacement
message was edited on v6.4.X and below...
Let me clarify, can you ping using hostname?It seems limitation on your
iOS device.In addition, there are forums telling that DNS from VPN (IOS)
won't be applied if you have split tunnel
enable.https://community.zyxel.com/en/discussion/17951/problem-...
From your iPhone device, can you do ping or nslookup of the hostname?If
the iPhone device could not resolve the name, it seems to be limitation
from IPhone.In addition, there are forums telling that DNS from VPN
(IOS) won't be applied if you have spl...
Dear @YHC If you could connect to the fully qualified domain
(hostname.fully_qualified_domain.local), then your issue is with the DNS
suffix.Please add DNS Suffix on your SSL VPN
configuration.https://community.fortinet.com/t5/FortiGate/Technical-Tip...
Virtual Server is a type of Virtual IP that perform load balancing.If
you have Virtual Server, no need for Virtual
IP.https://docs.fortinet.com/document/fortigate/6.2.16/cookbook/713497/virtual-serverhttps://community.fortinet.com/t5/FortiGate/Techni...
It seems that you are using File Upload on your upgrade.Possible that
MD5 hash/checksum is incorrect or corrupted.I strongly suggest to
re-download and check MD5
checksumhttps://community.fortinet.com/t5/Customer-Service/Technical-Tip-How-to-verify-d...