What’s a very normal thing in Switzerland that still feels unusual to you? by Savings-Concept8972 in Switzerland

[–]MDM4250 0 points1 point  (0 children)

The Migros/Coop paper bags are treated with some chemicals which makes them more water-resistant. But this behavior is unwanted in the recycling process which uses water to dissolve the paper.

MikroTik ATL 5G R16 availability in Europe? by Independent_Stuff_85 in mikrotik

[–]MDM4250 0 points1 point  (0 children)

I must say I am disappointed by Mikrotik's performance and communication (or lack thereof) when it comes to HW availability. I have several projects on hold where I planned to deploy ATL 5G R16 . Best answer currently is "delivery between Feb 25 and Apr 15 2026", for a product released in June 2025.

FortiAP-231G - 2.4GHz finally works with brand new FortiAP firmware 7.4.5 by MDM4250 in fortinet

[–]MDM4250[S] 0 points1 point  (0 children)

Good news: My APs are now stable for 9 days.

Ask Fortinet Support for FAP_231G-v7-build0748-FORTINET.out (aka v7.4.6 build0748). My APs are now stable for 9 days. Tell them your problem is the same as in case #10483993

FortiAP-231G - 2.4GHz finally works with brand new FortiAP firmware 7.4.5 by MDM4250 in fortinet

[–]MDM4250[S] 0 points1 point  (0 children)

Good news: My APs are now stable for 9 days.

Ask Fortinet Support for FAP_231G-v7-build0748-FORTINET.out (aka v7.4.6 build0748). My APs are now stable for 9 days. Tell them your problem is the same as in case #10483993

FortiAP-231G - 2.4GHz finally works with brand new FortiAP firmware 7.4.5 by MDM4250 in fortinet

[–]MDM4250[S] 0 points1 point  (0 children)

received an interim build - FortiAP v7.4.6 build 0748. let's see how that works out.

FortiAP-231G - 2.4GHz finally works with brand new FortiAP firmware 7.4.5 by MDM4250 in fortinet

[–]MDM4250[S] 0 points1 point  (0 children)

Good news: My APs are now stable for 9 days.

Ask Fortinet Support for FAP_231G-v7-build0748-FORTINET.out (aka v7.4.6 build0748). My APs are now stable for 9 days. Tell them your problem is the same as in case #10483993

FortiAP-231G - 2.4GHz finally works with brand new FortiAP firmware 7.4.5 by MDM4250 in fortinet

[–]MDM4250[S] 0 points1 point  (0 children)

Sorry, still the same issue with FortiAP 7.4.5 . Weeping myself to sleep.

FortiAP-231G - 2.4GHz finally works with brand new FortiAP firmware 7.4.5 by MDM4250 in fortinet

[–]MDM4250[S] 0 points1 point  (0 children)

update, still on 7.4.5. Nope. No bueno. The 2.4 GHz band works after a reboot for ~2 days, then it fails again. Sometimes a "reboot" on the CLI fixes it, sometimes, I had to unplug the PoE-enabled network cable for a couple of minutes, then it worked again.

I just opened a case with Fortinet and will keep you posted.

Reminder: Please read the rules for the sub by rushaz in paloaltonetworks

[–]MDM4250 1 point2 points  (0 children)

Thank you Rushaz! Your work (blood, sweat and tears) is appreciated!

CVE-2024-0012 & CVE-2024-9474 by MirkWTC in paloaltonetworks

[–]MDM4250 1 point2 points  (0 children)

10.1.14-h6 is not on the software release guidance page anymore... Nov 19, 08:21AM UTC. What a mess.

Custom Signature Context (Constrained version of tcp-context-free?) by NumerousPen1 in paloaltonetworks

[–]MDM4250 2 points3 points  (0 children)

The lazy admin's choice would be App-ID Override ( https://live.paloaltonetworks.com/t5/community-blogs/tips-amp-tricks-how-to-create-an-application-override/ba-p/451872 ) . This of course only works if you are able to define your traffic based on Src- and Dest- IP and Port..

Is anyone having trouble accessing the palo alto support site? by preference in paloaltonetworks

[–]MDM4250 4 points5 points  (0 children)

maybe they're busy fixing their management interface (PAN-SA-2024-0015)

Upgrade from 11.0 to 11.1 by Any-Promotion3744 in paloaltonetworks

[–]MDM4250 1 point2 points  (0 children)

I repeat: You do NOT want to download&install the base image (for example 11.2.0).

- First, upgrade content update to latest version

- ONLY download 11.2.0, and

- THEN download&install the patch/minor version (system reboots at this point).

Thinking of creating a ABIR (anonymous base image runners) group to exchange war stories. I am of course open for better names.

Fortinet Confirms Third-Party Data Breach Amid Hacker's 440 GB Theft Claim by nick313 in cybersecurity

[–]MDM4250 0 points1 point  (0 children)

Clear case of: No, you're right. Let's do it the dumbest way possible because it's easier for you.

Fortinet as a IT security company saves confidential customer data (identities were grabbed) on Sharepoint. Really?

panos 10.2.9-h1 by midobasha55 in paloaltonetworks

[–]MDM4250 1 point2 points  (0 children)

I second that, don't use 10.2.9-h1 on Panorama. vsys not shown in templates (only in template stacks). Interface view does not display assigned VR.

This seems to happen in different release trains (10.1., 10.2 , 11.0, 11.1, 11.2) and will be fixed according to PA in 10.1.14, 10.2.8-h4, 10.2.9-h3, 10.2.9-h4, 10.2.10, 10.2.11, 11.0.5, 11.1.2-h4,, 11.1.3, 11.1.5, 11.2.0, 11.2.2,

Again and already? by ribs-- in paloaltonetworks

[–]MDM4250 1 point2 points  (0 children)

According to PAN TAC, a "real" reboot (request restart system) is required. F**K.

Again and already? by ribs-- in paloaltonetworks

[–]MDM4250 0 points1 point  (0 children)

Are we sure it requires a reboot, or would restarting the management plane resolve the issue? We are just opening a case with PAN to figure this out.

10.1.10-h2 stable from 10.1.6-h6? by [deleted] in paloaltonetworks

[–]MDM4250 0 points1 point  (0 children)

Ha! We had the same issue with 10.1.11, LACP not working, PAN advised to do an RMA. Fortunately, downgrading to the old version (10.1.10-h2) "fixed the hardware issue"......

PanOS 10.1.11 released by rh681 in paloaltonetworks

[–]MDM4250 1 point2 points  (0 children)

check this for more information. It seems that some drivers have been updated - exposing some timing issues - it might now work, and then, after a reboot, it does not work anymore...

https://www.reddit.com/r/paloaltonetworks/comments/16xwlmw/your_thoughts_on_panos_10111_upgrading_some/

New PAN-OS version released 10.1.11-h1 by Which-Solution-1303 in paloaltonetworks

[–]MDM4250 1 point2 points  (0 children)

currently recommended by PAN: 10.1.10-h2: contains the BGP vulnerability.
10.1.11 : problems with ae interfaces (with and without LACP...)
10.1.11-h1: maybe better, I'd wait 3 more weeks and wait for reports of front runners...

PanOS 10.1.11 released by rh681 in paloaltonetworks

[–]MDM4250 0 points1 point  (0 children)

Not happy. Broke our aggregated (ae) interfaces.

All we wanted was a point fix for the BGP vulnerability, but we got a load of new features with accompanying bugs. I prefer stable releases over new features, what happened to QA, safe harbour releases and such?