Description This article describes important information regarding the
SNMP OID which can be used to retrieve the FortiClient EMS connectivity
status from a FortiGate Firewall. Scope FortiOS version 7.4.2. Solution
The connectivity status between the...
Description This article descries that FortiClient provides the
flexibility to choose either an external browser or a
FortiClient-embedded browser for SAML authentication. If an external
browser is used then the credentials are cached in browser cook...
Hi, - Are you using a dedicated public IP for your FortiSASE instance? -
We can usually block the communication using threat feed.
https://docs.fortinet.com/document/fortisase/latest/administration-guide/751044/appendix-a-fortisase-data-centers-
Howe...
Hi, - If the issue is seen with Chrome/Edge then most likely the issue
is with the Kyber Support. You can try to disable the setting in one
device and verify if the issue is same or not. - Information Regarding
the quick protocol. If the quic is bloc...
Hi, - Have you tested if this is the issue? You can try to test if web
filter works as per the expectation by disabling the Kyber support in
the browser. - Work around for this issue is to use the proxy based
firewall policy instead of the flow based...
Hi, - You can try to use dtls which will have better performance. - MSS
Setting will have impact on the TCP packets only. It reduces the segment
size which essentially reduces the total size of the packet. - I would
not suggest to use the value "zero...
Hi, - Is the issue seen with one specific browser only? - Is protocol
QUIC disabled? You can try to block the same. - Is there any improvement
if you use SSL deep inspection? Regards, Shiva