FortiGate Sub Interfaces (VLAN Trunking)
Jan25

FortiGate Sub Interfaces (VLAN Trunking)

KB ID 0001772 Problem I was asked by a colleague at work the other day, can we replace the Cisco firewalls with FortiGate firewalls for a client? As a business we are heading towards Forti, but before I said yes I wanted to know what the firewall was actually doing before I said yes. On closer inspection the firewall in question didn’t appear to be doing anything too scary, but I did notice that the LAN interface was...

Read More
FortiGate HTTPS Error
Dec08

FortiGate HTTPS Error

KB ID Article Problem While attempting to connect to a FortiGate firewall (with Firefox over HTTPS) you may see this error; Secure Connection Failed An error occurred during a connection to {x.x.x.x} SSL received a record that exceeded the maximum permissible length error code : SSL_ERROR_RX_RECORD_TOO_LONG The page you are trying to view cannot be shown because the authenticity of the received data could not be verified. Please...

Read More
Fortigate Load Balancing
Sep02

Fortigate Load Balancing

KB ID 0001762 Problem I’ve been getting through my NSE4, and one of todays topics was NAT, just as an offhand comment the ‘narrator’ (I say narrator because it’s a monotonous robot AI voice,) mentioned Fortigate Load Balancing. In the past (with my Cisco hat on) when I’ve been asked about load balancing, I’ve said ‘If you want to load balance, buy a load balancer’. But the Fortigate does...

Read More
What is SD-WAN?
Jun02

What is SD-WAN?

KB ID 0001752 SD-WAN? What is SD-WAN? A (Software Defined Wide Area Network) is a solution that unlike previous WAN architectures, (the type you typically see on a Visio diagram with maybe some MPLS, leased lines, and maybe some Optical DWDM etc. in them). SD-WAN gives you a more ‘Layered’ approach, that directs USERS to APPLICATIONS based on POLICIES.  For example, let’s say your main business CRM is a SaaS solution...

Read More
FortiClient: Unlicensed VPN access is available until..
Apr06

FortiClient: Unlicensed VPN access is available until..

KB ID 0001745 Problem I got an email from a client I deployed SSL VPN for, (a couple of weeks ago), one of his users was seeing this;   Unlicensed VPN access is available until {Date} {Time} Solution: Unlicensed VPN access is available until… At first I was confused, unlike other vendors SSL VPN is not a licensed requirement? As it turns out in my instructions, I’d written ‘Download the Forticliet” when I...

Read More
FortiGate Certificates Missing?
Apr01

FortiGate Certificates Missing?

KB ID 0001743 Problem Nice quick easy one today, while setting up SSL VPNs for a client I needed to import their Root CA certificate, and found  the Fortigate Certificates Missing? Usually they are under System > Certificates. But the tab was simply not there? Solution: Fortigate Certificates Missing Fortunately it was simple to fix, it’s a ‘feature’ you simply need to ‘enable’. Go to System >...

Read More