Description This article describes that Web filter is not working on
Google Chrome browsers, but is working well for others. Scope FortiGate.
Solution In some cases, users might experience the following issues:
Webfilter is in place on a flow mode fi...
Description This article describes issues with IPsec DIALUP VPN after
upgrading to 7.0.13 or 7.2.6 when multiple dialup phase1 are configured
on HUB/DialUp Server. Scope FortiGate. Solution When having a FortiGate
act as a HUB/Dialup Server with mult...
Description This article describes the case when it is not possible to
connect to the SSL VPN after upgrading to v7.2.5. Scope FortiOS 7.2.5.
Solution This issue is only present if PPPoE is configured under 'config
system pppoe-interface'. To solve t...
Description This article describes an issue that occurs when attempting
to send an initial FortiGate Serial Number to the EMS Cloud: Issue in
sending initial FortiGate Serial Number: EMS server connection failed
because the server is not compatible. ...
Description This article describes how to perform the initial setup of a
transparent proxy with an SD-WAN. Scope Any supported versions of
FortiGate and FortiOS. Solution First, configure the SD-WAN. See the
documentation for more information. In thi...
Hello, You can try to configure VIP port forwarding on the VIP
configuration as per the below document so the VIP matches only for
specific ports and not for all ports on the WAN public IP
address.https://community.fortinet.com/t5/FortiGate/Technical...
Hello, In a hub and spoke topology we can use ICMP probes to the hub
with embedded SLA performance information so the hub uses the same
overlay the spoke is using to avoid asymetric routing. In your scenario
you don't have a specific HUB as far as I ...
Hello Fabio, According to the CLI reference below there is no setting as
the one you mentioned. There are different settings to delay route sync,
or to delay failover events which you can see below:
https://docs.fortinet.com/document/fortigate/7.4.1/...
Hello, Portforwarding is Destination NAT - DNAT in your case. Mapping an
external IP address to an internal resource. When running the debug flow
you should be able to see the DNAT lookup, so trying to match the
traffic to a VIP if there is any VIP c...
Hello dilekc, You might be able to achieve it with static URL filtering.
1st rule -> Exempt www.facebook.com/companyname 2nd rule -> Block
In your case you are trying to allow a
specific path after the main link www.facebook.com so the policy would
...