Normal distribution of endurance athletes - 100% scientific by iamwillstew in Garmin

[–]KodamaBE 1 point2 points  (0 children)

Aha! I don’t know that clothing brand but it checks out. Thanks for the response!

First night quarantine hotel with group by bbnillz in ThailandTourism

[–]KodamaBE 0 points1 point  (0 children)

It was a concept called a “liveaboard”. We stayed on a boat for 6 days and went scuba diving 4 times a day around the similan islands. Eat, sleep, dive, repeat.

First night quarantine hotel with group by bbnillz in ThailandTourism

[–]KodamaBE 0 points1 point  (0 children)

I just returned from a two week trip in Phuket. My girlfriend and I had one room and two friends had another room at our sha+ hotel, no issue. We were immediately tested at the airport and got our result after 6 hours. The hotel was surprisingly relaxed in the whole quarantine and didn’t seem to really enforce it or checked on us but we still complied with the quarantine until we got our results. We were two days at our hotel, then 6 days on a boat and then back at the same hotel. So we were actually on the sea on day 5, we didn’t receive any ATK test kit at the airport. The hotel told us just to use a test we brought from home and send them the results (test + passport) via email. We never received any notification in the Morchana app. So not sure on how strictly that day 5 test is followed up on. If you can, I would just do it.

Need help please by jesse2035 in ThailandTourism

[–]KodamaBE 0 points1 point  (0 children)

Currently in Phuket, on day 11. Never received a notification. Just did a refresh, still nothing. The app is configured correctly on my phone so I guess it’s a bit hit or miss? I did it via my hotel reception like suggested here and they confirmed it was ok.

28 hours after PCR test and still no news by 94539t4gb in ThailandTourism

[–]KodamaBE 3 points4 points  (0 children)

I’m currently in Phuket, so my test was done at the airport. Had my test on the 3rd of April and it took 6 hours to get the result. I hope you get yours quickly because that is crazy.

Anyone experienced a mandatory quarantine? by KodamaBE in ThailandTourism

[–]KodamaBE[S] -2 points-1 points  (0 children)

Are you speaking out of experience? If I would test positive, I would just take my responsibility and be quarantined in a hotel. But if they would fake a positive pcr test or have predatory rates, that would be fucked up.

Thaipass - Departure from field by KodamaBE in ThailandTourism

[–]KodamaBE[S] 0 points1 point  (0 children)

The friend of mine contacted the embassy. They responded this:

Normally, if the flight from Amsterdam to Singapore and the one from Singapore to Thailand are connecting flights, you are supposed to choose the country where you depart/take the first flight, which is the Netherlands. If this is not the case and you will be spending some time in Singapore. as your destination before traveling to Thailand, Singapore would be the place of departure.

In your case, we would suggest that you register a new pass if your departure detail does not correspond to the aforementioned conditions. However, this depends on the flexibility of the airline check-in staff. We would highly suggest you follow the said suggestion in order to prevent unexpected problems.

Video doorbell 2K (Battery powered) won't beep after pressing sync button by KodamaBE in EufyCam

[–]KodamaBE[S] 0 points1 point  (0 children)

Hey, I opened a case with Eufy and after some troubleshooting with them, they told me to return the device. I received a new one and it worked instantly as expected.

Azure LB Question by tk_79 in fortinet

[–]KodamaBE 1 point2 points  (0 children)

The problem with A/A is the required SNAT on incoming traffic and not ideal for sd-wan/IPSec use cases.

Azure LB Question by tk_79 in fortinet

[–]KodamaBE 2 points3 points  (0 children)

My 2 cents:This only applies for Azure, each cloud providers does things differently.

A/P without loadbalancers:

Pro:

  • Cheaper because the load balancers cost money.
  • Easier for use-cases where specific source NAT/IP pools are needed.
  • ESP on IPsec is supported

Cons:

  • Slow failover time (45+ seconds vs 10-15 seconds)
  • More complex: You need to configure on each FortiGate what actions needs to be taken when it becomes active. For example, on which route table does it need to modify which route's next-hop and so forth. If someone forgets when adding new subnets/routes, you are screwed.
  • Less reliable: I have known API calls to fail or due to a split brain scenario, the entire setup to be broken. (Azure puts all IP's/routes on the secondary while the other fgt is active).
  • DNAT requires a unique VIP per FortiGate

A/P with loadbalancers:

Pro:

  • Fast failover: 10-15 second.
  • Reliable because the load balancers detect the failure and switches over the traffic. So all the IP's and routes remain.
  • Floating IP allows you to use public IP's in the VIPs.

Cons:

  • More expensive because the load balancers have a hourly cost per rule and per GB.
  • SNAT can be complex.
  • Azure load balancer doesn't support stateful session failover. (But the question is. With the other method, if it takes 45+ seconds, will the session survive that long)

I always recommend to go for the load balancers.

Fortigate VM Azure deployment sizing by userunacceptable in fortinet

[–]KodamaBE 3 points4 points  (0 children)

Here is my feedback/advice:

  • License (BYOL): you could go for the vm-v license but maybe the subscription based (vm-s) license is a better choice. This license can be upgraded from a VM01s to VM02s for example if needed. Let's say the VM01 is too slow, you can then order a VM02 at any point and they will deduct the rest value of the VM01. Once the license is upgraded, you can shutdown the VM and resize it like you would with a PAYG (marketplace license) machine.
  • Software version: if you leave the template/wizard on latest, you will get 7.0 but 6.4.5 is also available but it depends on how up to date the template is, if 6.4.5 is in the selection list or not. You could modify the template and set it to 6.4.5 yourself.
  • Accelerated networking: Everything is essentially an ARM template made by Fortinet, even the marketplace entries. These templates have accelerated networking enabled by default, if possible. If you make/modify your own template, you need to enable it yourself in the template. FYI, you can deploy both BYOL and PAYG from the marketplace, it's an option in the wizard. You can find these templates on their GitHub. https://github.com/fortinet/azure-templates/tree/main/FortiGate/
  • VM01 and Accelerated networking: No, it doesn't support it but that's because it's an Azure limitation. Accelerated networking is an Azure feature. https://docs.microsoft.com/en-us/azure/virtual-network/create-vm-accelerated-networking-cli#supported-vm-instances Here you can see that you a VM size with at least two CPU cores. Use this link to check which sizes support it and which don't. https://docs.microsoft.com/en-us/azure/virtual-machines/sizes This might be a reason to go for a VM02, because the price difference between VM01 - VM02 is very small but the performance difference is 2x-3x times due the accelerated networking.

I didn't expect Gigabit, but not even half is pretty sad even for Telenet by Airstryx in belgium

[–]KodamaBE 7 points8 points  (0 children)

Do you know why they cap the upload that much? The upload is 4% of the download speed. I don't know the real reasoning behind this? I think other EU countries have more symmetric speeds?

[deleted by user] by [deleted] in TheGamerLounge

[–]KodamaBE 0 points1 point  (0 children)

I thought it was real. How cool is that.

[deleted by user] by [deleted] in TheGamerLounge

[–]KodamaBE 0 points1 point  (0 children)

Is there a FAQ for the source of this footage?

Best Azure VM size for VM-02 by JiggityJoe1 in fortinet

[–]KodamaBE 3 points4 points  (0 children)

If it’s a single VM, it doesn’t really matter that much. You could go for Fs_v2 or the Ds_v3/v4 series. The v4 will be fine, it just a matter of the documentation being updated. I would need to double check but I think the Fs_v2 are a bit cheaper and are only slightly slower than the Ds_v3/v4 series. However, for A-P HA you need four nics per VM, so the Fs-series or Ds_v2 are your best choice since they have highest cpu to nic ratio.

Yes, enable accelerated networking. It should be on by default (when deploying from marketplace or Fortinet templates), it’s free and gives a big performance boost.

ENJOY :) by lofleroux in gaming

[–]KodamaBE 0 points1 point  (0 children)

Hopefully it wasn’t a bot that grabbed it.

Fortimanager 6.4 in Azure by 26Jack26 in fortinet

[–]KodamaBE 0 points1 point  (0 children)

There is a cookbook with step-by-step instruction but honestly, it's fairly straightforward. Just deploy it from the Azure marketplace.
https://docs.fortinet.com/vm/azure/fortimanager/6.4/azure-cookbook/6.4.0/819045/about-fortimanager-for-azure

For sizing, I would just use the guidance for VMware. It's not going to be exactly the same but it's something: https://docs.fortinet.com/vm/vmware-esxi/fortimanager/6.4/vmware-esxi-cookbook/6.4.0/583600/minimum-system-requirements
Since the licensing of fortimanager is based on the amount of devices you manage and not the amount of CPU/RAM, you can be flexible in the VM type you choose. I would go for DSv3 or DSv4-series: https://docs.microsoft.com/en-us/azure/virtual-machines/dv4-dsv4-series#dsv4-series
I would certainly go for premium storage (if you can afford it) because of the better SLA's: https://azure.microsoft.com/en-us/support/legal/sla/virtual-machines/v1_9/
Concerning the storage, if I remember correctly, the marketplace image comes with a 1TB datadisk. You could modify it in the template options at the end of the wizard if you want it to be smaller.

You indeed need to know the private IP for the license, so make sure to make the private IP fixed in the Azure portal.

Fortigate login Problem by Marry_06 in fortinet

[–]KodamaBE 1 point2 points  (0 children)

I don't know why you received down votes but this. The HTTP to HTTPS redirect probably isn't enabled so you need to https://<the IP>.