FortiOS 8.0: Custom Tags, Dynamic Tag Address Groups, and Policy Tagging
Overview FortiOS 8.0 introduces custom tags as a first-class organizational and operational construct across the firewall object model. Tags can...
Read MoreMulticast Routing vs Multicast Forwarding on FortiGate
These are two distinct mechanisms on FortiOS, and conflating them is a common source of "my multicast isn't working" tickets....
Read MoreFortiGate Replacement Messages: A Practical Deployment Guide
Replacement messages are the pages and text blocks that FortiOS substitutes in place of blocked, quarantined, or intercepted content. When...
Read MoreFIPS 140 Explained: Levels, Lifecycle, and Fortinet Support
If you sell into government, defense, healthcare, or finance, the phrase FIPS validated eventually lands on your desk. FIPS 140...
Read MoreFortiGate and NTP 4.0: Dual-Homed Time Sources, Authentication, and Hardening
Accurate time is one of those infrastructure fundamentals that nobody thinks about until it breaks. On a FortiGate, the system...
Read MoreSecuring the Gate with Security Profiles Series: Application Control
1. Introduction and Concepts Application Control is a FortiGate security feature that identifies and governs network traffic based on the...
Read MoreSecuring the Gate with Security Profiles Series: Web Content Filter
Welcome to our comprehensive series on FortiGate Security Profile configuration and deployment named Securing the Gate with Security Profiles. Over...
Read MoreFortiSwitch Troubleshooting Guide For FortiSwitches Managed by FortiGate (FortiLink)
1. Introduction and Architecture 1.1 What is FortiLink FortiLink is the proprietary management protocol used by FortiGate firewalls to discover,...
Read MoreKasm Workspace on Ubuntu Linux; How to deploy and configure VPN
Even when running a VPN, your machine can leave artifacts of your connection on sites when you are doing OSINT...
Read MoreLogging deep-dive on FortiGate Firewalls
1. Introduction and Scope This deployment guide provides a complete technical reference for designing, configuring, and operating logging on Fortinet...
Read MorePolicy-Based Routing on FortiGate Firewalls – A Comprehensive Deployment Guide
1. Introduction Policy-based routing, or PBR, lets a FortiGate make forwarding decisions on attributes other than the destination address. Traditional...
Read MoreReplacing a failed FortiSwitch in an Multi-Chassis Link Aggregation (MCLAG)
Replacing a failed FortiSwitch in an Multi-Chassis Link Aggregation (MCLAG) pair requires a bit of care to prevent network loops...
Read MoreUnderstanding and Tuning FortiGate Conserve Mode: A Practical Guide to Memory Thresholds
If your FortiGate has ever started dropping sessions during a traffic surge, or if you have logged in to find...
Read MoreQuantum-Safe FortiGate: A Practical Guide to Post-Quantum Cryptography in FortiOS
The cryptography that protects your VPN traffic today was not designed with quantum computers in mind. RSA and elliptic-curve cryptography...
Read MoreA Beginner’s Guide to FortiOS 8.0’s CLI Code Lab
If you have ever made a change to a firewall and then watched in horror as your connection went dead,...
Read MoreA Practical Guide to Ping: Your First Tool for Network Troubleshooting
When something on a network breaks, the first instinct of most engineers is to reach for ping. It is one...
Read MoreA Practical Guide to DNSRecon: DNS Enumeration Done Right
DNS is one of the loudest, most underappreciated sources of intelligence about an organization's infrastructure. Before anyone touches a port...
Read MoreUnderstanding the Linux diff Command: A Practical Guide
If you have ever needed to know exactly what changed between two versions of a file, the diff command is...
Read MoreARP: The Quiet Protocol That Keeps Your Network Running
Every time your laptop talks to your router, a small but essential protocol runs in the background to make it...
Read MoreFortiGate BGP Troubleshooting: A Practical Guide
BGP issues on FortiGate firewalls usually trace back to a handful of common culprits: misconfigured peers, routing policy mistakes, or...
Read More