featured articles
Fortigate CLI Tips and ...
I am a CLI guy. Make no mistake, I like the GUI but at the end of the day, I...
Syslog Server running ‘...
Although I run FortiSIEM on my home lab, I wanted to have a quick & dirty,...
Forticloud 3.2 for APs
Fortinet’s FortiCloud was introduced to provide customers the ability to...
IKEv1 & IKEv2
I have been dealing with VPNs for the past 20 Years. Primarily I have used...
popular articles
random articles

Fortigate CLI Tips and Tri...

I am a CLI guy. Make no mistake, I like the GUI but at the end of the day, I am a CLI Jockey and love the “ugly black screen”. To that end, I wanted to throw some short cuts together and post them on this blog. GREPGrep is a Unix command introduced years ago by Ken Thompson, in Unix 4. It is extremley useful from a BASH perspective to search for keyword(s) in multiple files or standard output. FortiOS is...

Syslog Server running ‘rsy...

Although I run FortiSIEM on my home lab, I wanted to have a quick & dirty, low cost, simple solution to just collect logs. I am not a big Windows guy so wanted to keep the bloat off of my lab ESX environment. I deployed my standard CentOS 7 minimal installation (5 min install). Once installed, I suggest backing up the original rsyslog configuration file located in /etc. The file name is rsyslog.conf...

Forticloud 3.2 for APs

Fortinet’s FortiCloud was introduced to provide customers the ability to manage their device entirely from the cloud. This post will cover the APs specifically and I will follow it up with a Fortigate one and others (e.g. switches) as they become available. What you need:1. FortiCloud Key2. PoE Switch / Power Injector3. DHCP Server handing out IPs for the AP (since it needs to get out to the Internet)...

IKEv1 & IKEv2

I have been dealing with VPNs for the past 20 Years. Primarily I have used IKEv1 as it was the most used. In this post, I will go over what IKEv1 is and the differences between it and IKEv2. There are RFCs you can read, however if you decide to, you probably don’t like yourself that much. I will try to make this as simple as I can so I myself can understand it. Like a wise man once said “If you...

Stepping Up My Dongle Foo

Last night I was presenting at a local ISSA meeting. When I arrived, my POS (Not Point of Sale) USB C to HDMI Dongle stopped working. I was embarassed that my $5,000.00 laptop could not connect to an HDMI display natively. Thankfully another vendor was also preenting and was gracious enough to share his. I went to Amazon and promptly ordered two new dongles. Upon doing so, I rememberd this video and...

VI Cheat Sheet

Here is a simple VI cheat sheet. I like ‘vi’ because it is pretty much included by default in everything. Just like in my Cisco life, I have always used the CLI and not GUIs because sometimes, those GUIs don’t work or they are not present. This way you can always be ready for anything that comes your way. Scrolling and Searching Command Function <ctrl>d Scroll down (half a screen) <ctrl>u...

Reformatting MAC addresses...

Today, a customer asked me to add his 150 phone’s MAC address to their MAB Bypass database they use for 802.1x. The customer game me the output from an Excel spreadsheet that contained the MAC addresses but without the “-“ in it. I needed to get it in the 01-11-11-11-10-00 format. Here is the Excel formula:...

« Older Entries