Do you have FortiSwitches that do not accept configuration changes made on the FortiGate switch controller? Also, when you run the CLI command ‘execute switch-controller get-conn-status’, do you see the ‘flag’ with a value of ‘E’?
Do you have FortiSwitches that do not accept configuration changes made on the FortiGate switch controller? Also, when you run the CLI command ‘execute switch-controller get-conn-status’, do you see the ‘flag’ with a value of ‘E’?
In diesem Update möchten wir Sie über wichtige Änderungen in Bezug auf die E-Mail-Zertifizierung durch SwissSign informieren. Ab dem 26. August 2024 (neu 8. September 2024) werden neue Root-Zertifikate für die Ausstellung von E-Mail- bzw. S/MIME-Zertifikaten verwendet. Alle bestehenden CA- und Endbenutzer-Zertifikate bleiben gültig. Die Änderung betrifft nur Zertifikate, welche…
… or accessed from any unauthorized party. In some cases it’s not even necessary to hack a system to gain access to it. For example it may be enough to leak a configuration file to allow unauthorized system access. Fortunately, many cases of a suspected hack turn out to be…
From time to time, our support team encounters questions about why FortiGate is having trouble connecting to FortiGate Cloud. These queries have become more frequent recently, so I believe it’s time to address the issue in a blog post. If you’re experiencing the same error message, you’re in the right…
When configuring the Border Gateway Protocol (BGP) Router, you may encounter issues where dynamic routing doesn’t work as expected due to configuration problems. This article provides a handy set of troubleshooting commands to address these issues effectively.
In a significant move by Fortinet, the upcoming FortiOS version 7.4.4 introduces a pivotal change affecting numerous FortiGate devices. Users planning to upgrade need to be aware of the substantial shift from proxy-based features, which will no longer be supported under this new firmware version.
I recently came across the requirement to connect two vsys on a NGFW appliance. Let’s assume we have two vsys, vsys1 and vsys2. One way is to use a network cable to connect a port in vsys1 to a port in vsys2 in terms of hardware. However, there is another…
In the last days we have had several support cases that suspiciously all had the same error description: many web servers can no longer be reached with the Chrome or Edge browser. In our cases typically the Webfilter feature from one of our firewalls has been involved. Right now we…
Motivation As a distributor we offer various security products from different vendors. On the one hand these are FortiGate and PaloAltoNetworks NGFW firewalls to make the perimeter more secure, on the other hand products & services from Kaspersky. Kaspersky offers various threat feeds that can be used in other products….
Palo Alto Networks discovered a vulnerability (CVE-2024-3400) with a CVSSv4.0 base score of 10 that impacts PAN-OS version 10.2+ with GlobalProtect enabled. We strongly recommend all to review the advisory for remediation steps. Are you affected? This vulnerability does not apply to you if any one of the following apply:…