I saw some conversation about stopping auto-upgrade on FGTs before after
7.2.8. And, we're doing it manually for those FGTs that are NOT managed
by FMG. Then when we tried the same for those managed by FMG, the change
was rejected because it's manage...
This version of FMG was released last week and now CVE-2024-47575 is
released as well.https://www.fortiguard.com/psirt/FG-IR-24-423However,
the release notes doesn't have anything in the resolved issue section.
Does this actually have the vulnerabili...
A basic question: Would Websocket app (TCP 443) traffic be filtered by a
policy with a Web Filter profile? Or do we need to match it with
Application Control in a separate policy before or after the web filter
policy?Thanks, Toshi
I'm working on migrating my home OpenSUSE machine I'm using for
freeradius server to authenticate admin and VPN users on my FG40F(7.2.8)
from Leap 15.3 to 15.5(on a new machine). Obviously 15.5's repo has a
newer version of freeradius-server image.Th...
As all the other users at FortiCloud must have gotten, I received an
announcement email per email account for 2FA auth enforcement starting
June the 7th.My question is if it would apply to this Forum login
account. I've kept using my old account emai...
100.64.0.0-100.127.255.255 range is used for CG-NAT by your
ISP.https://www.draytek.co.uk/information/blog/what-is-cgnatWhich is not
reachable from the internet. The real IP, which is 109.204.176.115, is
shared with ISP's other customers. Therefore, ...
Of course, yes. Otherwise the config items wouldn't start with
"admin-https-" and "admin-ssh-". That's a common practice to disable
lower SSL encryptions and use SSH v2 only. Also, at least 7.2 or above,
those settings are there by default. So if you...
Not much thought to put on unless your vDSL provider is using a VLAN.1.
Put your vDSL route/modem in bridge/modem mode like in this
video:https://faq.draytek.com.au/2022/04/20/configuring-the-draytek-vigor167-for-bridge-mode/2.
configure your 101F's ...
Just be aware that FortiOS still might need to catch up those newer G
series, especially 200G, released last October. You might need to wait
some time to have all features available. Probably your schoolboard
would take a year or so to make the decis...