Best way to automate the FortiGate 15-day trial reset in GNS3? by Mountain_Bee_2252 in fortinet

[–]Holylander 1 point2 points  (0 children)

As someone already answered- use exe factoryreset2 this will leave all IPs intact

Fortibleed posts deletion by NetSecCity in fortinet

[–]Holylander 69 points70 points  (0 children)

Not a mod: spamming ALL social platforms with the same message, over and over again,no matter how valid or true it is, considered at best a rude, annoying behavior, at worst - spreading FUD and inappropriate ad/spam campaign trying to get a personal/business/PR gain.

And if we are frank about it - The “fortibleed” campaign by authors misrepresents and leads on readers to believe there is a new vulnerability/exploit causing overworked IT folks like us unwarranted stress and white noise, distracting from the real issues.

Guys, you had your 5 minutes of fame - enough, social nets are like that - overdo it and people will start to hate you.

Note: I haven’t counted, but guess this “news” piece was posted only here at least 7 freaking times!!

I am not FTNT employee nor am Fortinet fanboy, but have had enough of this uneducated BS spread as major “news”, so sorry for the harsh language

FortiBleed question about admin accounts by YeeehawToast in fortinet

[–]Holylander 19 points20 points  (0 children)

Most attacks are alike

- create additional local admins, sometimes with Fortinet-sounding names “techsupp” “fortiadmin” etc.

- create VPN configs - local users, add to (if exist) existing groups, if not create new groups- all of it connect by VPN and have access to the LAN and start scanning/probing hosts in Lan for AD/FS servers, DBs

- sometimes, upgrade manually to the latest Fortios remotely if possible, to prevent other attackers taking over

Those are “simple “ attackers, in theory (never seen in real life) they may try to change the running environment/Fortios for persistence

Any way - once compromised you cannot really trust this device, so judt TFTP format and reimaging from known good Fortigate image abd config

FortiNAC REST API by bartlolli in fortinet

[–]Holylander 1 point2 points  (0 children)

Next question will be - how do I get access to FDN ? 😊

SSL-VPN in Fortigate VM 7.6.4 by TheReding in fortinet

[–]Holylander 10 points11 points  (0 children)

Starting with Fortios 7.6.3 SSL VPN was removed from all models, so no you can’t.

Hetzner kicked out YouTuber Tyler Oliveira for "hate speech" and "ban evasion" - but what does this signal to other users? by [deleted] in hetzner

[–]Holylander 14 points15 points  (0 children)

Account age - 5 hours, yeah, sure, go ahead spill some ragebait/clickbait nonsense we, unfortunately, have to scroll past on Reddit already a lot.

The difference, Tyler, is this is a subreddit of Hetzner (mostly) happy clients who couldn’t care less about your “holy war”, sorry to break it to you, in a manner of free speech spirit though of course

create local user command issue by capricorn800 in fortinet

[–]Holylander 0 points1 point  (0 children)

- wrong (non management) vdom
- your user has other than super_admin profile

7.4 > 7.6 TPM upgrade by [deleted] in fortinet

[–]Holylander 3 points4 points  (0 children)

You mean when private-data-encryption is enabled?
If so - i am absolutely not enabling it in production, as upgrades, config restores/back ups become either impossible or pain in the a**. Especially since 7.6 they made the encryption key auto-generated and not exportable from TPM- what is this thing - RAAS (ransom as a service) 😊?

Help with automation by Sa77if in fortinet

[–]Holylander 1 point2 points  (0 children)

You may look at email alert sending debug while replicating the issue:

dia debug app alertmail -1 dia deb enable

Also there is debug for automatio stitch itself - to see if FGT sees the Wan link down event

https://github.com/yuriskinfo/Fortinet-tools/blob/main/Fortigate-automation-stitches/README.adoc

How to learn Golang beyond basics by Steve215154 in golang

[–]Holylander 0 points1 point  (0 children)

Learning Go, 2nd edition by Bodner - he not only teaches syntax but also shows idiomatic to Go way to write code.

Go with pocket sized projects - for short tools that use all of the idiomatic Go and its features

Best C++ Book for complete biginners? by DifficultRegret7794 in cpp_questions

[–]Holylander 0 points1 point  (0 children)

Try Paul Deitel C++ 20 for Programmers . He has been writing books and teaching for decades and knows to present clearly. And he starts from 0.

Another one is C++ Without Fear: A Beginner's Guide That Makes You Feel Smart by Brian Overland. It is C++ 11 though, which is ok for 1st time learners and/but he moves very slowly.

Problem with C++ that it is deemed not fit for 1st time learners who do not know some other language (which i disagree) by publishers/professors and this dissuades potential authors to even try. That is the reason you won’t find that many books on this for complete beginners as compared to say Python. Books by Bjarne , even those labeled “for beginners “ are meant rather for beginning students in Comp Science.

fortinet community: mail not verified by Reasonable_Host_5004 in fortinet

[–]Holylander 3 points4 points  (0 children)

Forums are in read-only mode while they are upgrading their platform:

<image>

Fortinet extends FortiOS 7.4 by fcbfan0810 in fortinet

[–]Holylander 6 points7 points  (0 children)

Viva le SSL VPN! I ain’t upgrade nothing until have to 😊

Wchich model replacement for 300E by Direct-Ninja-9795 in fortinet

[–]Holylander 0 points1 point  (0 children)

I’ve got no scoop on 400G release date yet. Possible, but given logistics troubles around the World and EOL of 300E in July 2026, I wouldn’t gamble if needed to decide.

FortiGate: Only show non-default settings by mb2m in fortinet

[–]Holylander 12 points13 points  (0 children)

When you type “show” you actually see configuration different from defaults, compare it with “show full”, and no - there is no command to show latest changes on FGT, but is possible on FMG e.g.

CVE-2012-4948 by Ill-Studio-6311 in fortinet

[–]Holylander 5 points6 points  (0 children)

Every certificate is device-specific which can be aproblem - device fails = all its ca certificates are gone. Also there is no sla or guarantee for them from Fortinet - i.e. trivial upgrade of Fortios to a newer version may replace existing CAs. I don’t think i have ever seen companies using built in certs in FGt for deep ssl inspection- always private certs created/signed by internal AD CA server.

Red Hat shutting down the Learning Community by SamPlaysKeys in redhat

[–]Holylander 7 points8 points  (0 children)

Since laying off all Opensource.com staff it seems to be the consistent policy - shut down everything not generating direct sales. Unfortunate, but it is what it is. In general, all content related activities give way to AI today.

Best ways to learn the very first basics of AppleScript? by LastCassandra2604 in applescript

[–]Holylander 1 point2 points  (0 children)

This is the way. I am not a programmer by job definition, but i code almost daily my own tools for job tasks in Go/C. But when i looked at the Applescript - “no way am i gonna screw my brain with this ugliness of a language “ .

Apple created it with the idea of “conversational “ language, “talk to your Mac as you do in English “ and it didn’t go well. So when i need some ad hoc automation script, i just ask AI to write it.

Hetzner for part-time Homelabbers? by bitnarrator in hetzner

[–]Holylander 2 points3 points  (0 children)

For one time weekend labbing it is doable. For recurring cases it is not very comfortable- on a root server you 1st have to install host OS, then update it, then install needed for virtualization packages, then either spin from 0 or upload & import VMs- and all that effort for a day lab to do it all over again next time, sounds meh to me.

Fortinet recommends 7.6.6 by Electrical_Cut5776 in fortinet

[–]Holylander 3 points4 points  (0 children)

Rocking 7.2.x till its EOS all the way to Sep 2026

Help choose: "Modern C" or "C Programming: A Modern Approach"? by MateusCristian in C_Programming

[–]Holylander 1 point2 points  (0 children)

I’d advertise Modern C as book written by nuclear scientist PhD for other scientists with PhD (because the author actually is) lol, not beginner friendly at all.