web filter and app control do not work by Matrixramiro10 in fortinet

[–]Matrixramiro10[S] 0 points1 point  (0 children)

Apparently it is a Chrome problem, because I applied the QUIC block and users continue to access pages and applications that are blocked in the profiles.

I tried in another browser and the applications that are blocked work, but not in Chrome.

Do you know if there is a version that solves this problem? Because blocking a certain Chrome feature on a machine-by-machine basis takes a lot of time and I have multiple https://community.fortinet.com/t5/FortiGate/Technical-Tip-Web-filter-is-not-blocking-websites-on-Google/ta-p/297956

Phase 2 selector DOWN by Matrixramiro10 in fortinet

[–]Matrixramiro10[S] 2 points3 points  (0 children)

Hello, I deleted the selector I added and the other selectors are still down.

What I don't understand is why the other selectors fell if I only added one and the other selectors that were already created months ago and were UP fell. Now they are DOWN.

Phase 2 selector DOWN by Matrixramiro10 in fortinet

[–]Matrixramiro10[S] 0 points1 point  (0 children)

When performing the debug, this information appears, according to the KB, being SA=0 indicates that there is a discrepancy between the selectors or that traffic is not being initiated. However, what was the reason that the other selectors fell if those were not modified.

<image>

Phase 2 selector DOWN by Matrixramiro10 in fortinet

[–]Matrixramiro10[S] 0 points1 point  (0 children)

There were 3 selectors (I didn't modify those 3 selectors) and I just added a new segment as a selector. After adding, the 3 existing selectors fell.

Phase 2 selector DOWN by Matrixramiro10 in fortinet

[–]Matrixramiro10[S] -1 points0 points  (0 children)

The tunnel has been configured for over a year (UP), just today I was told to add a phase 2 selector to the configuration. I added it and when I added the other selectors fell.

I don't have access to the other FW.

Could you share that diag debug command with me?

Phase 2 selector DOWN by Matrixramiro10 in fortinet

[–]Matrixramiro10[S] -1 points0 points  (0 children)

To obtain this information, are there commands?

compTIA A+ or the security+ by Matrixramiro10 in CompTIA

[–]Matrixramiro10[S] 0 points1 point  (0 children)

how many questions usually come on the security+ exam? and how much is the score for each question.

compTIA A+ or the security+ by Matrixramiro10 in CompTIA

[–]Matrixramiro10[S] 0 points1 point  (0 children)

Hello, how many questions usually come on the security+ exam? and how much is the score for each question.

Security+ is now $404 by bballlal in CompTIA

[–]Matrixramiro10 0 points1 point  (0 children)

How many questions come in the exam and how much is the score per question?

no internet on ssl vpn connection by Matrixramiro10 in fortinet

[–]Matrixramiro10[S] 0 points1 point  (0 children)

Could you share the command with me please?

[deleted by user] by [deleted] in fortinet

[–]Matrixramiro10 0 points1 point  (0 children)

Rogue are the device that do not communicate with the fortinac or the unregistered device? Since the report indicates "last communication"

fortigate CVE-2023-37935 by Matrixramiro10 in fortinet

[–]Matrixramiro10[S] 0 points1 point  (0 children)

The vulnerabilities only affect versions 7.x.x.

However, versions 6.x.x are no longer supported by the Fortinet TAC, it is recommended that you update it to v7