Description This article describes how to fix an issue where the in-band
management IP does not respond to SSH, ping, or HTTPS. Scope Models
affected: FortiProxy. Solution A FortiProxy cluster configured with
management IP does not respond in 7.2.x a...
Description This article describes how to change the value of adding DNS
records on a secondary zone. Scope FortiGate v7.0. Solution Records are
added during the AXFR zone transfer until the maximum is reached. This
value can be changed, but by defau...
Description This article describes key pair mismatch for local
certificates. Scope FortiOS. Solution If the CSR was not done on
FortiGate, then a private key will be needed along with the password, if
this is missing that is why an error appears rega...
Description This article describes how to add a new certificate to
SSL/SSH inspection profile. If it is impossible to select the
certificate in the SSL/SSH inspection, it can be for two reasons: Either
the certificate is not imported in the correct w...
Hello, Have you tried multiple user credentials on the same computer
having an issue with FCT? Does the issue occur for local users as well?
The KB below can help you what to check for each of the percentage stuck
: 48%.Negotiation stops at this perc...
Hello, As per your request the link below can help on getting more
informationabout the integration with Grafana and the steps to follow
for the configuration.
https://n8n.io/integrations/fortinet-fortigate/and/grafana/
https://www.youtube.com/watch?...
Hi, Let me add also how to block by region >>
https://community.fortinet.com/t5/FortiGate/Technical-Tip-How-to-block-by-country-or-geolocation/ta-p/196741
In your case the firewall policy is create from Wan to Wan , can you
please change from Wan to ...
Hi, Please check the documentation related to the SSH and Telnet
restriction :
https://community.fortinet.com/t5/FortiGate/Technical-Tip-Restricting-SSH-and-telnet-from-FortiGate-to-other/ta-p/241246
If you feel the above steps helped to resolve the ...
Hi, Can you run the following commands during the issue : SSH1: diag
sniffer packet any 'host x.x.x.x and icmp' 4 0 l <---- x.x.x.x host in
the other side of the tunnel SSH2: diagnose vpn ike log-filter dst-addr4
diagnose debug application ike -1 di...