fnsysctl is frequently helpful in troubleshooting Fortigates, and while
its options are mentioned in the Forums here and there, no single
article lists them, and not all options are mentioned, so I wrote a post
to summarize the info.Originally posted...
Good day everyone,I added to my repo folder with FortiAnalyzer Handlers
collection ready to use.Your feedback, and ideas for new Handlers are
always welcome.Repo:
https://github.com/yuriskinfo/Fortinet-tools/tree/main/Fortianalyzer-handlers
Thanks.
Good day everyone, hope you all are doing well. I created a Github repo
where will collect scripts, tools, anything that helps in daily work
with Fortinet products.So far put a collection of Fortigate automation
stitches (21) you may find helpful. Ne...
Good day everyone, was wondering - I am reading Fortinet documentation a
lot (here in community "Tips", admin guides etc.) and sometimes stumble
on incorrect/outdated or plain typo/incorrect info. Is there a way to
alert someone on that?Thanks E.g.
h...
Good day everyone, here is a guide I wrote to harden your Fortigate VPN
SSL in additional ways.Your feedback is welcome and will be included in
the updates.Linkedin: Fortigate VPN SSL Hardening Guide Thanks P.S.
Tried to upload the original PDF but s...
Moving VPN SSL from WAN to Loopback:Create Loopback interface with
internal IPChange SSL VPN Settings to listen on this Loopback
interfaceCreate VIP portforwarding for SSL VPN port Create policy WAN ->
Loopback allowing SSL VPN port by using the crea...
Not an answer, just an observation - in my many years with Fortigates I
am yet to recall the case when it changed ifindex dynamically and not
after upgrade/config restore from another device or other config
manipulations. By ifindex we talk about sho...
Conserve Mode happens when Foritgate memory usage passes certain
threshold - ~ 90% used, configurable. The chances are this is some
process leaking memory, and in this case you will only know which one if
you enter the FGT once it entered/immediately...
As others have said - yes, you have to configure SMTP server for
forwarding alert mails OR, as Toshi mentioned, make sure there is a
default by Fortinet mail server System -> Settings. One caveat with
using default Fortinet mail servers - they are pr...