IC Knowledge Base

Fortigate Phase 2 Keep Alive

When enabling Keep alive please be aware that this also enables Auto-Negotiate.  Whilst both options generally work well together we have seen instances, especially when establishing VPNs to PFsense devices that this can cause random issues.

Disabling Auto-Negotiate seems to fix these.

0 (0)
Article Rating (No Votes)
Rate this article
Attached Files
There are no attachments for this article.
There are no comments for this article. Be the first to post a comment.
Security Code Security Code
Related Articles RSS Feed
Technical Note: Custom NTP server configuration
Viewed 2871 times since Fri, Aug 11, 2017
Fortigate SSL/TLS Handshake fails
Viewed 5853 times since Wed, Dec 6, 2017
Fortigate Hairpin NAT
Viewed 7899 times since Fri, Aug 4, 2017
Technical Note: Error ’Unable to establish the VPN connection. The VPN server may be unreachable. (-5)’ on FortiClient with SSL VPN
Viewed 38347 times since Mon, Aug 7, 2017
Fortigate DC Replication RPC port 135 Session-Helper
Viewed 4249 times since Wed, Dec 6, 2017
FortiGate MAC host check on SSL VPN
Viewed 5180 times since Fri, Aug 31, 2018
Full (Deep) SSL Inspection - Avoid certificate errors
Viewed 5125 times since Thu, Jul 26, 2018
How to configure DNS based FortiGuard web filtering with FortiOS v5.4
Viewed 4664 times since Wed, Aug 2, 2017
Technical Note: DNS resolution not working when DNS Server configured to ’Same as Interface IP’
Viewed 7100 times since Wed, Aug 9, 2017
Internet Central Limited, Innovation Centre, Keele Science Park, Keele, Staffordshire ST5 5NB
Registered Office: Ivy House Foundry, Hanley, Stoke-on-Trent, ST1 3NR
Registered in England: Reg No. 03079542 VAT Reg No. GB 278 923 705
Contact Us |Terms & Conditions |Legal, Privacy and Cookies
All prices exclude VAT E.&O.E © 2015 Internet Central

All trademarks and logos appearing on the site are the property of their respective owners