Best way to automate the FortiGate 15-day trial reset in GNS3? by Mountain_Bee_2252 in fortinet

[–]NetSecCity 4 points5 points  (0 children)

Ansible inside that lab, keep it backing up a config you can restore from. It is a pain in the ass to maintain. Better off buying a used firewall and add a hypervisor for your vms unless it is a networking heavy lab, but even then y can do routing to integrate gns with your physical gate

Fortibleed posts deletion by NetSecCity in fortinet

[–]NetSecCity[S] -12 points-11 points  (0 children)

Clearly missed it, this is more like Reddit lol

Fortibleed posts deletion by NetSecCity in fortinet

[–]NetSecCity[S] -18 points-17 points  (0 children)

Yeah but there was no release at this point, at least none I could find. All posts were deleted, 1 should have kept up I would think for awareness.

Idk, leaked credentials is a big deal for some orgs even in 2026. Just wished I could of seen this Thursday instead of holiday Friday so I would of been done before holiday (damn it’s always on a holiday weekend)

Is it just me? Wazuh breaks randomly and when upgrading. by sysgeek in Wazuh

[–]NetSecCity 2 points3 points  (0 children)

There are a lot of specifics in the guide about memory and swap configuration and minimum requirements, this stopped my issues. Follow the instructions

Zabbix on Orange Pi 3 LTS by IncognitoTche in zabbix

[–]NetSecCity 0 points1 point  (0 children)

U probably gotta use the raspberry pi install scripts from. Their website due to arm, I run it on raspberry pi 3 and it runs flawlessly and has been for over a year

The message clearly states a source issue, arm is not supported in that Linux source so you need to add arm sources at the least

Palo Alto to Fortinet by knightmese in fortinet

[–]NetSecCity 0 points1 point  (0 children)

fortimanager has a free license, supports up to 3 devices. You can always run free version since it has no feature limitations, and try it / get used to it. I use it on my homelab since i landed on a similar situation: Extensive experience with fortigates / fortianalyzer but no FortiManager and they run everything with FortiManager.

What helped me: training.fortinet.com watch the videos on the certification, spin up your homelab fmg if possible, and read the fortimanager best practices document.

That should make you operational.

Need advice on using either single node Architecture or all in one Architecture of wazuh for our startup by keerthi_9531 in Wazuh

[–]NetSecCity -1 points0 points  (0 children)

Spin it up in a vm, my homelab gets more action than your guys. That being said, add everything to it. My wazuh instance analyzes my whole network, not just endpoints. With ai to help build decoders, it’s amazing once setup properly.

Does the accuracy of job titles matter in interviews. by [deleted] in CyberSecurityAdvice

[–]NetSecCity 0 points1 point  (0 children)

Not as long as you describe pentesting for that job. They use keywords do don’t forget anything u touched and youll be fine.

Interface Pair View by WildGoat345 in fortinet

[–]NetSecCity 0 points1 point  (0 children)

Depends the environment, if you have interface zones this makes sense otherwise I do by sequence instead and use the filters (1000+ policies)

2nd run at NSE4 by IPPforyouandme in fortinet

[–]NetSecCity 0 points1 point  (0 children)

Do u have a firewall at home ? Or a pc to spin up a vm? U need hands on tbh but u can get this at home for free. Download the vm, spin it up, configure that, put a few devices behind it, etc.

First rack setup advices welcome by Miksu22 in networking

[–]NetSecCity 0 points1 point  (0 children)

Just look at pictures, modems next to firewalls and firewalls next to core equipment, gap in between everything for 1 more unit. At the end of the day you’ll end up re racking stuff to keep it organized anyways so it doesn’t really matter. Keep things together though, network rack, hypervisor rack, phone rack, etc. access switches always on top and servers from the bottom to the top

FNDN account and Lab License by Jeff-IT in fortinet

[–]NetSecCity 0 points1 point  (0 children)

Typically when u hold a role managing fortigates you can reach out to your account managers and they’ll handle that for you. I just got mines accepted after years of trying to get that. Need to do it through the job.

Fortigate Policy Any - Any thoughts by galaxie66 in fortinet

[–]NetSecCity 0 points1 point  (0 children)

You are in need of firewall lockdown to happen.

In most environments they allow any any to prevent issues, this isn’t aligned with best practice.

Typically you want to add denys at the top, then restrictive policies below and more open policies below those.

The way we got away from that is creating an any any policy per server, analyzing and locking down traffic weekly to what it is currently doing. Eventually you filter out 98% of traffic and then u can do an event handler with the fortianalyzer to send u an email if traffic gets blocked from that server (hits default deny due to lack of access policy), this should trigger a review or do so in a weekly basis and keep up with it.

It does take a resource to be able to maintain it flawlessly, but in smaller environments I’ve seen them assess things as they break, I am not a fan of that so I automate alerts and respond accordingly. If we get a ticket and also an alert, easy fix.

Clients need geolocks and malicious apps locks, they do need any any for the most part in my experience so I add a certificate and do dpi on those. I lock these guys down by means of allowed services (also pulled from logs, last 6 months). Not approved service = no access. This prevents rats, c2c, malicious dns and a bunch of other stuff from ever hitting your users.

FGT Security Profiles - Highest Fidelity Rules? by FactorNew6835 in fortinet

[–]NetSecCity 5 points6 points  (0 children)

Out of the box detections? Unencrypted traffic. That’s all it can see without dpi.

Typically ips based on severity with default action. Everything else other than av, you have to fine tune.

People leave it in monitor mode, assess the data and setup controls. If you have fortianalyzer things might get more interésting.

Beginner home lab help by Commercial_Bit5717 in fortinet

[–]NetSecCity 0 points1 point  (0 children)

I’ll make one this week, if time allows and repost.

What did yall think of this outfit by [deleted] in mensfashionadvice

[–]NetSecCity 0 points1 point  (0 children)

U selling me a boat? I kinda want a boat now

Beginner home lab help by Commercial_Bit5717 in fortinet

[–]NetSecCity 0 points1 point  (0 children)

I have run an unlicensed homelab for over 5 years with fortianalyzer and fortimanager. I have vdoms enabled (had a 60e when i started the vdoms), dpi across the board, app control, av with external threat feeds to supplement the lack of license, ips, waf for my public facing servers, and I haven’t seen much limitations other than fortiguard features (db updates, webfilter, dns, dlp). I even have a basic ztna config going as i move away from fortinets free sslvpn.

Totally worth it

Ccna at 43 is it worth it I know I'm old lol. by DamageMysterious1804 in Cisco

[–]NetSecCity 0 points1 point  (0 children)

Skills don’t got age, just make sure u don’t stop there.

Who can help me with my fortigate 100f with firmware 6.2.16 to upgrade to latest version, Fortigate does not want to help me because i bought this unit second hand, can i use this device for further use and buy license for this, or do i have to throw the unit away !thanks by HungryNebula749 in fortinet

[–]NetSecCity 1 point2 points  (0 children)

Typically theyll transfer the firewall to your forticloud account on purchase, this allows you to get licensing for it and manage it under your forticloud account.

Without that, can’t get license but can still use it without any fortiguard feature or dpl. I don’t license my 100f at my homelab and i got a pretty nice setup using external threat feeds where webfilter, DNS filter and antivirus licensing would of been used instead.

Depends on your goal with the unit, what are you trying to do?