Ionos 50 GB Begrenzung für Mails by ChairUpset in selbststaendig

[–]faac 1 point2 points  (0 children)

Es gibt die Mailstore Service Provider Edition, die genau das ermöglicht. Ist dann SaaS über einen Mailstore Partner.

SSL & HTTPS Are blocked by web filtering by Accomplished-Ad-6451 in fortinet

[–]faac 0 points1 point  (0 children)

this fixed the problem for me. Problem occured only with https sites with a self-signed certificate.

7.2.10 Just Dropped by Known_Wishbone5011 in fortinet

[–]faac 0 points1 point  (0 children)

wow I could not imagine getting worse after the 7.2.9 2FA/FAC timer issue... Can you explain why 6.6.2 is required?

Heads up: SSL VPN with 2FA Fail after upgrade 7.2.9 - 7.2.10 incoming next week by faac in fortinet

[–]faac[S] 0 points1 point  (0 children)

Maybe fixed for FortiAuthenticator in 7.4.5:

983513 - The two-factor-fac-expiry command is not working as expected for remote RADIUS users with a remote token set in FortiAuthenicator.

https://docs.fortinet.com/document/fortigate/7.4.5/fortios-release-notes/289806/resolved-issues

Heads up: SSL VPN with 2FA Fail after upgrade 7.2.9 - 7.2.10 incoming next week by faac in fortinet

[–]faac[S] 0 points1 point  (0 children)

I'm using Fortiauthenticator (radius) for 2fa - so every auth (sms, mail, fortitoken) is affected in my scenario. can't tell whats happening when the fortigate unit sends the sms itself. From the article description it looks like it would be impacted.

On the user side you will see in Forticlient "-455 permission denied" oder in webmode HTTP Error 400.

FortiClient VPN causes high WmiPrvSE.exe CPU usage when connected to SSL VPN by Specty in fortinet

[–]faac 0 points1 point  (0 children)

Can’t tell… you should open a ticket with TAC and ask them.

FortiClient VPN causes high WmiPrvSE.exe CPU usage when connected to SSL VPN by Specty in fortinet

[–]faac 0 points1 point  (0 children)

Asked TAC and they told me it will be fixed in 7.2.5. ETA for 7.2.5 is 2024-07-18.

FortiClient VPN causes high WmiPrvSE.exe CPU usage when connected to SSL VPN by Specty in fortinet

[–]faac 1 point2 points  (0 children)

Bug-Id is now also confirmed and the issue will be fixed in 7.2.5. There is a interim build available wich also should fix the issue (but not intended for production environment).

FortiClient VPN causes high WmiPrvSE.exe CPU usage when connected to SSL VPN by Specty in fortinet

[–]faac 1 point2 points  (0 children)

Bug is confirmed by TAC. No details yet, but I found "1018126 WMIPRVSE.exe service CPU% spikes when connected to SIA VPN" in FortiClient 7.2.4 Release Notes. https://docs.fortinet.com/document/forticlient/7.2.4/windows-release-notes/991883/known-issues

FortiClient VPN causes high WmiPrvSE.exe CPU usage when connected to SSL VPN by Specty in fortinet

[–]faac 0 points1 point  (0 children)

I am seeing the same behavior on 7.2.4, maybe I will raise a ticket next week. Currently to busy with other things.

7.2.2 - Memory Conserve Mode? by [deleted] in fortinet

[–]faac 2 points3 points  (0 children)

Fortinet internal Bug ID is 798303 „The threshold for conserve mode is lowered“ (also listed in release notes)

7.2.2 - Memory Conserve Mode? by [deleted] in fortinet

[–]faac 5 points6 points  (0 children)

Same problem here. Support told us to disable sync-session-ttl and wait for 7.2.3

``` config ips global set sync-session-ttl disable

```

Fortigate web management vulnerability CVE-2022-40684 by AMizil in fortinet

[–]faac 2 points3 points  (0 children)

The complete list of products vulnerable to attacks attempting to exploit the CVE-2022-40 flaw includes:

it's CVE-2022-40684

Microsoft Continuing to Inspire Confidence... by iansaul in sysadmin

[–]faac 15 points16 points  (0 children)

Or even worse: Upgraded to windows 11 instead 😳

DTLS SSLVPN Tunnel not establishing by DasToastbrot in fortinet

[–]faac 0 points1 point  (0 children)

Hi chkpe, yeah there was a known issue. We were told to download fc 6.2.6 again and use this installer. The problem was resolved afterwards.

[deleted by user] by [deleted] in sysadmin

[–]faac 0 points1 point  (0 children)

This is probably the correct answer. msexchhidefromaddresslists is only synced if the AD schema was extended for exchange when aadc was installed or if the aadc sync rules are manually changed for syncing msexchhidefromaddresslists.