Description This article describes how to resolve the host-check
interval error displayed after enabling the host check feature in the
SSL VPN Portal. Scope FortiGate. Solution This issue may be encountered
when trying to configure and apply the Host...
Description This article describes why users may be unable to login to a
Single Sign On Administrator account. Scope FortiGate. Solution Issue:
If all local FortiGate Administrators has trusted hosts configured, it
will not be possible to login to th...
Description This articles describes how to utilize workspace mode to
make changes to a Static WAN IP while remotely accessing the FortiGate
through its WAN. Scope FortiGate Solution Workspace mode provides the
ability to make changes that can revert ...
Description This article describes possible reasons for user
disconnection while using SAML SSO Authentication. Scope FortiGate.
Solution Issue: Check the server certificate being used in SAML: config
user saml edit "saml-user" set cert "CA_SIGNED_OL...
Description This article describes that when the dialup IPsec VPN is
connected, the traffic is being dropped because of no matching firewall
policy. Users can connect to the VPN successfully, however, traffic is
being dropped by the FortiGate. Scope ...
Hello tomi_it, Could please review this document:
https://community.fortinet.com/t5/FortiGate/Technical-Tip-How-to-calculate-the-SNMP-OID-value-for-current/ta-p/258358
Hello fortinetforumfiokom, This may be a cosmetic issue in the GUI. When
you edit the policy in the CLI are you see the logging enabled here? Or
do you see any traffic being denied in the logs?
Hello dlarson, The issue you are facing closely resembles the tls1.3
hybridized kyber support. Currently the workaround is to swap the
policies inspection mode from flow based to proxy based.Here are some
other posts discussing the
issue:https://comm...
Hello Carsten, You could try to recalculate the checksum on primary and
secondary. If that does not work, would you be able to reboot the units?
https://community.fortinet.com/t5/FortiGate/Technical-Tip-Procedure-for-HA-manual-synchronization/ta-p/19...
Hello shaymalakov, Please see this document for details and requirements
that need to be included for the custom signature:
https://docs.fortinet.com/document/ipsengine/3.6.0/custom-ips-and-application-control-signature-syntax-guide/274110/creating-i...