Questions tagged [fortigate]
For questions about Fortigate, the UTM product line from Fortinet
134 questions
9
votes
2
answers
9k
views
load-balancing difference between DNS and IP - forwarding vs redirecting
I have come across a situation that I cannot understand. We have a Fortigate firewall that we have enabled to do load-balancing across two back-end Apache web servers. A DNS name is then mapped to ...
8
votes
3
answers
28k
views
Policy routing configuration in Fortigate
I have an scenario where a Fortigate firewall is used to separate internal networks from the Internet (FortiOS Version 4.0 MR3 patch 11). Right now there is a single Internet connection attached to ...
7
votes
2
answers
10k
views
Source NATing Fortigate typical scenario
I have a small query with respect to NATing in Fortigate.I'm struck in particular by a scenario where the remote network allows users with a specific IP range with a specific port for RDP over a ...
6
votes
2
answers
5k
views
Fortigate 100D internet on VLAN wan port
I am fairly new towards Fortigate firewalls and I am trying to set up one FortiGate 100D running firmware v5.0 as a router for a hotel network. I have 2 ISPs using PPPoE connection that runs on VLAN ...
6
votes
1
answer
6k
views
VPN client to multiple locations simultaneously
I need to connect to 15+ locations to run network scans weekly. All the locations have Fortigate firewalls over which I have full control. The current solution I have is to connect via IPSec VPN to ...
5
votes
8
answers
8k
views
How can I use SSL remote access VPN for connecting two sites?
I have a Fortigate 110C on my central site. I have a remote site office too. The users at the remote site need to access the central site via a VPN. Can I run SSL client software on one of the PC's or ...
5
votes
2
answers
26k
views
How to flush route cache in fortigate
Is there something like route cache on fortigate like in linux?
How can i clear this cache?
I have some problems with OSPF, after adding or changing redistributed network. Foritgate show routes ...
5
votes
2
answers
5k
views
Fortigate HA: how to locate switch port connected to passive unit?
In a new customer's network I have found the following scenario:
Fortigate 1 and 2 form and HA cluster in active-passive mode. The HA link is just a cable connecting them directly.
Racks A and B are ...
5
votes
2
answers
25k
views
Fortigate: HTTP/HTTPS Traffic Connections Timeout
I'm having an oddball issue with HTTP/HTTPS traffic through my FG-100A running 4 MR3 Patch 18. The basic architecture is Internet<->Modem<->FG-100A<->Switch+WAP<->Clients. The switch is ...
5
votes
1
answer
23k
views
Fortigate reverse path check fail
I have a Fortigate 1240B with a vlan interface with IP 172.22.0.27/16. When a host directly connected try to ping my IP, I got the messages below.
id=36871 trace_id=2 func=resolve_ip_tuple_fast line=...
4
votes
2
answers
972
views
Is Fortigate-60D a fanless model?
I would like to know if Fortigate-60D is a fanless model or not. However, neither Fortigate-60D datasheet nor Fortinet Product Matrix provide any information about this topic.
Could you please ...
4
votes
5
answers
64k
views
How to get a list of ports listening in a Fortigate firewall?
Since several services can be offered by the Fortigate itself (SSH and web access for admin tasks, SSL VPN, IPSec VPN...) I would like to check at a glance all ports where any service is being offered ...
4
votes
2
answers
917
views
Why is LACP not working between Dell S5224F-ON switches and FortiGate virtual switches (line protocol down, member inactive)?
I am unable to establish the LACP link between two infrastructures separated by approximately 20 km. The Dell switches show "line protocol is down," and the interfaces are reported as "...
4
votes
1
answer
3k
views
I can't ping the gateway IP (fe80::1) from the internal port in my fortigate 60f firewall
I am using a fortigate 60f firewall. I have configured it for both ipv4 and ipv6. I have used the SD wan (by adding wan1 and wan2) for load-balancing. Moreover, I have configure a default static route ...
4
votes
4
answers
9k
views
How to check the ifIndex on a Fortigate 1500D?
What is the exact command to check the port ifIndex that is used by SNMP to reflect trap at SNMP host at 1500D Fortigate?
The command diagnose sys device list root displays the index which isn't ...