The big items were things like setting password policies, disabling
management on web-facing interfaces, disabling the auto-install, setting
banners, specifying encryption standards, local-in policies to restrict
access to our FortiManager, stuff lik...