u/AdAlternative2475

Bad IP Reputation

Hello Folks,

We’ve whitelisted the Germany geo on our Fortigates.
Some user from Germany are able to get on the SSL VPN without any issues, however some users are facing problems while connecting to VPN.
Checked the logs, and logs show that connection is being denied by explicit deny rule.
I suspect it to be an issue with the IP (Bad reputation).
I’ve tried configuring the address group for the specific IP and then create an in-line policy ( listening interface is same as SSL VPN listening on), also added the address group in the SSL VPN whitelist.
But user is still experiencing issue. The client connects to VPN and then a few seconds later it goes down.
What else needs to be done to fix this? Has anyone else came across such scenario?

reddit.com
u/AdAlternative2475 — 1 day ago
▲ 2 r/Fortigate+1 crossposts

Bad IP reputation

Hello Folks,

We’ve whitelisted the Germany geo on our Fortigates.
Some user from Germany are able to get on the SSL VPN without any issues, however some users are facing problems while connecting to VPN.
Checked the logs, and logs show that connection is being denied by explicit deny rule.
I suspect it to be an issue with the IP (Bad reputation).
I’ve tried configuring the address group for the specific IP and then create an in-line policy ( listening interface is same as SSL VPN listening on), also added the address group in the SSL VPN whitelist.
But user is still experiencing issue. The client connects to VPN and then a few seconds later it goes down.
What else needs to be done to fix this? Has anyone else came across such scenario?

reddit.com
u/AdAlternative2475 — 1 day ago

Hey everyone! 👋

I’m currently in the market for a new router, and I’m trying to decide between three models: Ubiquiti UniFi Dream Machine (UDM), Asus RT-AX3000, and TP-Link Archer AX73. I have Spectrum internet and multiple devices in my home (smartphones, streaming, gaming consoles, laptops, etc.).

Here's what I’m looking for in a router:

Wi-Fi 6 support for future-proofing.

Strong security features (e.g., firewall, malware protection) but I'm not sure if I need things like a VPN.

Ability to manage and control my network, especially if I want to customize settings like guest networks or prioritize certain devices (e.g., for gaming or streaming).

Good performance for a household with heavy internet usage.

Price: I’m happy to spend for advanced features, but I want to make sure it’s a good value for my needs.

Quick comparison of the three models:

Ubiquiti UniFi Dream Machine –: Known forenterprise-level security and advanced features. Great for detailed network management and scalability.

Asus RT-AX3000 –: A Wi-Fi 6 router with solid performance for home use, good security, and easy setup.

TP-Link Archer AX73 –: Another Wi-Fi 6 router with better features (like HomeShield security), and slightly more affordable than the UDM.

Questions:

Have any of you used these models? How do they perform with multiple devices connected (like streaming, gaming, and regular browsing)?

Security-wise, how does the Ubiquiti UniFi Dream Machine compare to the other two? Is it too much for a home setup, or is it worth the extra cost for the features it offers?

Is the price difference for the Ubiquiti UniFi Dream Machine justified for solid performance and security in a home network, or would the Asus or TP-Link options be just as good for what I need?

Would you recommend any other routers that are great for home networks, especially if I don’t necessarily need advanced VPN featuresor enterprise-level security?

Appreciate any insights you can share! 🙏

reddit.com
u/AdAlternative2475 — 15 days ago