Description This article explains FortiGate's behavior when the SSL
client certificate authentication is enabled in the SSL VPN Scope
FortiGate SSL VPN. Solution FortiGate supports client certificate
authentication in its SSL VPN deployment. Administ...
Description This article explains how to perform the basic
troubleshooting for host check failures in SSL VPN in FortiGate, Scope
FortiGate, SSL VPN. Solution The host check feature in FortiGate helps
the Administrator define specific parameters to r...
Description This article describes one of the reasons why FortiGate does
not update the dynamic firewall address object even though it receives
the REST API command to update the address object. Scope FortiGate and
FortiNAC integration. Solution In t...
Description This article explains the FortiClient telemetry connection
key setting in the FortiClient EMS which can be used to restrict the
users from connecting to the EMS server from FortiClient. Scope
FortiClient EMS. Solution FortiClient can regi...
Description This article explains the failure in the authentication if
an admin logs into the Firewall using a name that can be matched to both
the regular admin and the wildcard admin. Scope FortiGate v7.4.4 and
above. Solution In FortiGate, a wildc...
Hi, - Is there any change in the network connection such as wifi going
down and coming up? - Is the Auto Connect enabled in the FortiClient
configuration? Regards, Shiva
Hi, - Are you having access of the firewall which is acting as the SSL
VPN gateway or you are trying to block the communication in a
passthrough fortigate? - If you are trying to block the communication in
a passthrough fortigate then you can create ...
Hi, - Was the issue seen in GUI or CLI? - Were you able to see the
policy with the correct source and destination in the CLI by running the
command "show firewall policy"? Regards, Shiva
Hi, For which type of traffic you are observing the error? Are you
seeing ip-conn error for UDP/DNS traffic or ping traffic or TCP traffic?
default session timeout is 3600 seconds. But if the session is not
established and it is half open state then ...
Hi, - What is the FortiGate version you are running? - Is the Geo IP
database updated or outdated? You can refer the below KB to verify if
you have the latest GeoIP database.
https://community.fortinet.com/t5/FortiGate/Technical-Tip-How-to-update-the...