My home firewall 40F (7.2.1) rebooted unexpectedly. I looked in the log and found that the reboot was done by the user "fortigate-tech-support" and the reason was a firmware upgrade (7.2.1->7.2.2)
In system/Administrator this user was created and I don't know about it. My admin password is set to 17 characters (including special characters) and another administrator has an equally strong password. FortiGate is added to FortiCloud. Passwords remained unchanged, all configuration looks ok.
How should I explain it? I'm assuming it's not a trusted event... or is it something to do with the new CVE?
What are the best practices for this (other than upgrading to a patched version)? Besides the user "fortigate-tech-support" that I deleted, is there anything else to watch out for? I checked the configuration several times (using PSpad) and found nothing out of the ordinary.
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.