I just ran into this: We have a Windows DHCP that has a scope for a
vlan.the vlan interface on the FGT100E is set to do dhcp relaying to
this Windows DHCP.the Windows DHCP also has dhcp option 138 set for all
scopes it has.If I now connect a client t...
I did the following: - upgraded FMG to 7.0.11 while the FGT still were
on 7.0.13 => everything still worked fine afterwards- upgraded the FGT
to 7.0.14 during the next night (scheduled) => since then FGT keep
losing the connection to FMG when I deplo...
We just ran into this: today our FortiMail states it has no antispam and
virus outbreak license.It did have one because it also states the last
update of the antispam definitions was on 2024-02-06 and it cannot do
that without vallid license. If I lo...
We just ran into this issue and I just wanted to warn you to not do so
too: if you rename global address objects in FMG you can only do that
via script (TAC said this).If you assign this to an adom afterwards it
will be correctly assigned.You will ha...
I keep encountering this behavior: all of a sudden on some clients https
websites stop working.every time this starts the only thing noticable on
the FGT is that the memory usage is >=60%. Mostly around 63-65%. It
however does not reach the threshold...
the one AEK showed is an USB one with integrated UART Chip so can be
directly connected to Device and PC.The one you showed and also mine are
RJ45 to SUB-D which means they just convert the plug and you still need
to hook some USB2Serial adaptor onto...
hm my fortinet cables don't look like that. There is various others that
work. e.g. HP RJ45 Console cable. Cisco cables look rather the same from
outside (except from the Logo) but are incompatible due to cisco having
different pinout on their consol...
if there is something connected to your FGTs LAN Interfaces but nothing
blinks or lights this might mean that you dactivated the interface in
accident.You can check that on console: config system interfaceedit
show full then check for status. If that...
hm I assume that then you will need to use the FGT's AD Connector for
authenticating against AD. 2FA then might force you to create radius
users on the FGT to be able to add a cert or token to the user.
afair the Fortigates do support radius usergroups so you don't need to
create the users here. Alas in this case the 2FA has to be done by the
radius. We do it this way with IPSec VPN using a FortiAuthenticator for
radius auth on it using radius userg...