Wondering if anyone can help with a PCI DSS Compliance issue.Firewall
running FortiOS v6.0.12External vulnerability scan is showing "Secure
Sockets Layer (SSL)/Transport Layer Security (TLS) Server Supports
Transport Layer Security (TLSv1.1) port 443...
Without physically opening up our FAP-221C units, does anyone happen to
know what WiFi chipset they would be using? e.g. Broadcom or whatever?
My interest was piqued by this
story:https://www.zdnet.com/article/cisco-says-patches-incoming-to-address-n...
Upgraded our FAZ-VM to v6.2.3 this morning. Am getting high 40%+ CPU
usage on the VM. "exec top" shows this is caused by /bin/clusterd. From
reading another thread here, it was suggested that this is a known
problem in v6.2.3 and maybe there is an up...
Hi all,Starting from about 6:30am on 1st JAN 2020 (Australian Eastern
DST) we found a number of websites getting blocked. Took us some hours
top diagnose. We believe that they are being blocked by Application
Control (Proxy grouping, Hotspot.Shield)....
We have a number of FAP221C units managed through our Fortigate FG200E.I
would like to connect to the web interface of each AP, just to see
what's going on with each unit.I created a policy to allow traffic to
the IPs of the APs in the wireless subne...
Well, well, well ...Just on a whim I decided to try a third-party test:
https://www.cdn77.com/tls-testThat site reports that TLS 1.3 and 1.2 are
Enabled ... and TLS 1.1 and 1.0 are Disabled.Which is what I expected
from my config.So perhaps my regula...
I may do that when I have some spare time, but am too busy right now.We
noticed some odd side effects, with staff losing Internet access.I
suspect that FSAE/FSSO was performing poorly due to the large number of
excluded IPs.So for now I have reversed...
Yesterday I added the long string of extra IPs.Rebooted the DC
overnight.Today the Event ID 10028 errors for the IPs that were excluded
are continuing.I don't know what else to try.I'm running FSAE v5.0.0287
So I need to re-open this discussion, as the error logs have returned
with a vengeance!Since implementing Always On VPN a few months ago, I am
now getting Event ID 10028 again for every VPN client.I would like to
block a Range of IP Addresses (e.g. e...