Description This article describes a given scenario, where the Admin is
not able to block any website using Webfilter profile. FortiGate has a
reliable connection with FortiGuard servers with full licensing as well.
Admin also has Custom-deep-inspect...
Description This article describes how to use an automation stitch to
automatically prevent rogue IP addresses from accessing SSL-VPN. Many
distinct rogue IP addresses attempt brute force assaults virtually every
day in an attempt to login to SSL-VPN...
Description This article describes how to fix the issue when the
FortiGate GUI is not loading after the upgrade to v7.2.5. Scope
FortiGate v7.2.5 and onwards. Solution Make sure to use the correct
admin-sport. For example, the settings shown below us...
Description This article describes how to allow RDP from a PC to a
Windows Domain Controller using a non-Admin user Topology: The below
topology diagram is used, where both the Domain controller and PC are
behind the two different FortiGates, and FG1...
Description This article describes how to assign the Interfaces on
FortiGate-VM in AWS Cloud. This topology has been created to achieve:
Public_FG1 -->Port1 an IP from 10.1.1.0/24 Private_FG1-->Port2 an IP
from 10.1.2.0/24 HA_FG1 -->Port3 an IP from ...
Hello @unknown1020 Please follow the link below:
https://community.fortinet.com/t5/FortiGate/Technical-Tip-Free-up-memory-to-avoid-conserve-mode/ta-p/241415
Regards
Hello, @rezafathi You can use the KB mentioned below. You will be able
to create a automation stitch which would automatically add the rouge
IP's in a group and then you can use that group in a firewall policy to
block the access.
https://community.f...
Hello, You can run the command #di sniffer packet any "host x.x.x.x and
port 3389" 4 0 l x.x.x.x the destination server If you see the packet
leaving the Fortigate LAN interface (where your destination is connected
to) then it is not Fortigate issue ...
Hi @Simba 1)You have to configure SSLVPN listening on WAN Interface. 2)
Once you have the VPN setup then you would need firewall policy from
SSLVPN to DMZ. 3) You might have to enable the NAT on the firewall
policy if there is any sort of windows def...