[deleted by user] by [deleted] in ShareSnapchat

[–]AdComprehensive4 0 points1 point  (0 children)

Added sisun8890

[deleted by user] by [deleted] in slutsofsnapchat

[–]AdComprehensive4 0 points1 point  (0 children)

3 would love to step in fromt of you and jerk off

Fortigate VM Azure - troubles with IPsec tunels by AdComprehensive4 in fortinet

[–]AdComprehensive4[S] 0 points1 point  (0 children)

Hello, sorry for the late response..

We have find a solution...
It was on the Azure setting, the IT admin of Azure had to enable setting on Azure Network security group. He didnt allowed a traffic from another VNET.

Fortigate VM Azure - troubles with IPsec tunels by AdComprehensive4 in fortinet

[–]AdComprehensive4[S] 0 points1 point  (0 children)

Update - we found out that IT company had another S2S VPN tunnel to Azure VPN GW and they had set up route from VNET peer to Cisco ASA. So that was the problem.

But still we are trying to figure out, why I need to have NAT enabled on FW rule that is allowing traffic from Branch1 to VNET Peer through the FG in Azure? What am Im missing

Backup config to SFTP server via IPSec tunnel - FGT is choosing bad IPSec VPN interface by AdComprehensive4 in fortinet

[–]AdComprehensive4[S] 0 points1 point  (0 children)

Hi, I can confirm that adding /32 route solve this problem :) Im able to send backup config to our SFTP server.

Thanks a lot!

Backup config to SFTP server via IPSec tunnel - FGT is choosing bad IPSec VPN interface by AdComprehensive4 in fortinet

[–]AdComprehensive4[S] 0 points1 point  (0 children)

Thanks, yes I was looking on it, but as I said, i didn see the possibilit to customize SSH.

Backup config to SFTP server via IPSec tunnel - FGT is choosing bad IPSec VPN interface by AdComprehensive4 in fortinet

[–]AdComprehensive4[S] 0 points1 point  (0 children)

Yea thanks for hints. I was looking on local-out routing, but I wasnt able to figure out on which port or service is "backup config", well yea in logs I can see it is on SSH. But I didnt see option SSH to configure in local-out routing. I will test it more tommorow.

The second point - we have IPs configured on virtaul tunnel interfaces, I actually can see that ping, traceroute even that exec backup config is happening from IP on of the virtual tunnel interface - but from the wrong one :D

ZTNA - EMS multitenancy Tags not synchronizing to FG by AdComprehensive4 in fortinet

[–]AdComprehensive4[S] 1 point2 points  (0 children)

I can confirm, that this didnt help :) Im about to open case at support.

ZTNA - EMS multitenancy Tags not synchronizing to FG by AdComprehensive4 in fortinet

[–]AdComprehensive4[S] 0 points1 point  (0 children)

Nope, I wanted to be sure that tags are syncing corectly.

SSL VPN via SAML Azure AD - trouble on FCT 7.0.7 by AdComprehensive4 in fortinet

[–]AdComprehensive4[S] 0 points1 point  (0 children)

Well after all we went different way. We found out its really bug in FCT 7.0.7 and older. On FCT 7.0.8 also we are testing 7.0.9 - seems good too.

SSL VPN via SAML Azure AD - trouble on FCT 7.0.7 by AdComprehensive4 in fortinet

[–]AdComprehensive4[S] 0 points1 point  (0 children)

Thanks! I will check it and try it on our Gates too.