Re: Forti does not send "sa delete" when bringing down tunnel
Did you do any "diag debug app ike 10 " and is this ikev1 or ikev2? What event are you expecting to cause or generate the ipsec-SA delete?
if you down a ipsec-SA do you see a delete
diag vpn tunnel down vpn3