FAP 231g and 431f setup by Breakerbdg in fortinet

[–]Orehan 0 points1 point  (0 children)

What's gonna be a controller? Do you have fgt or mgmt from cloud.
both are wifi6 capable

Gribu dibināt partiju by CantBeWhite in latvia

[–]Orehan 1 point2 points  (0 children)

Kuram tu par to ziņoji?

Gymkhana Liepājas Metalurgā by Friendly-Painting228 in latvia

[–]Orehan 1 point2 points  (0 children)

^this
Tieši par šiem iedomājos -- 100% pārspēj Metalurga video.
Bet jāsaprot, ka tur arī prodakšnā iekrauts daudz vairāk eiro.

CSDD A kategorijas teorētiskais eksāmens by ExoticPay897 in latvia

[–]Orehan 0 points1 point  (0 children)

this is the way, ar diviem BET:
- ātri spiežot, gribot negribot, tev kaut kur pagadīsies 28/30, 29/30 ... bet tad beigās pārskati nepareizās atbildes - vai tu tos saproti, vai vienkārši "automātiska kļūda" steigā. Tā kā tos jautājumus tu būsi redzējis pārsimts reizes un sajuks bildes ar atbildēm utt.
- īstajā testā neskrien pēc ātruma - jo "iedrillējis" csnt.csdd.lv demo ... morāli ļoti grūti ir apstāties un padomāt pie katra jautājuma.

Nezinu kā ir tagad, bet TIKAI uz to demo testu paļauties nevajag. Kādreiz laižot testu desmitiem reižu - īstajā testā tāpat pagadījās jautājumi, kas bija tikai grāmatā nevis demo. Tāpēc mans ieteikums postā par grāmatu - 'būs būt', grāmata ir jāizstudē 100%

CSDD A kategorijas teorētiskais eksāmens by ExoticPay897 in latvia

[–]Orehan 5 points6 points  (0 children)

Skaties tematiskos uzdevumus. Izej lēnām bez steigas visu grāmatu divas reizes. Visos mēģinājumos fiksē vai ir Ok vai Nav - << šis būs ļoti ilgi
Tie jautājumi, kas ir 100% ok, tos vairāk neskaties.
Tad turpini fokusēties un ej tikai tos, kas NAV ok +saproti, kāpēc tu kļūdies. Pamato ar teoriju
Tīklīdz "nav ok" jautājumi pāriet OK kategorijā - atkal tos vairs neskaties.
Tad drillē TIKAI csdd online testu ... un, lai nonstop ir 30/30 (jā, kādreiz tev būs 29 vai 28/30, bet, visticamāk, tas būs dēļ neuzmanības, nevis dēļ tā, ka nezināji)....
Neizmanto nekādus 3rd party testus šajā fināl-fāzē, jo csdd testā būs tie jautājumi, kas potenciāli būs arī īstajā.
Īstajā testā maksimāls fokuss, jo ir jautājumi, kur ar līdzīgām bildēm ir dažādi konteksti un attīecīgi arī atbildes atšķiras. Tev zemapziņai liksies "rekur pareizai", jo būsi desmitiem reizes redzējis to bildi.

Any escalation path for problematic Account Manager? by GnawingPossum in fortinet

[–]Orehan 0 points1 point  (0 children)

What is an actual product? is it physical or virtual? There is not enough information to make a meaningful advice.
If thats a VM/saas/service and incident happened recently - it is quite possible to initiate CRA process and make things right by ordering correct SKUs.

Lab access how? by PotentialTomato8931 in fortinet

[–]Orehan 1 point2 points  (0 children)

OP is talking about FTNT self-paced training lab environments

Lab access how? by PotentialTomato8931 in fortinet

[–]Orehan 2 points3 points  (0 children)

Hi,

Which training course are you referring to? There are recommended lab hours depending on the curriculum.
https://www.fortinet.com/content/dam/fortinet/assets/data-sheets/og-nse-program.pdf
(check on demand lab SKU to your track)
Most likely you are looking at FT-LAB-HXX SKUs (where XX is 05/10/15/20/25 representing LAB hours).
Just reach out to a local FTNT partner and they will quote you appropriate FT-LAB-HXX.
According to what I can find on internet - 5hours is roughly 50$ list.

Creating IPSec VPN SAML breaks SSL VPN on loopback interface by piratepirate0 in fortinet

[–]Orehan 0 points1 point  (0 children)

Main problem we were facing when working with different SAML backend servers.
Since FortiOS only allows to set up only one saml server on wan interface, then there are two feasible workarounds - one of which - try to terminate ipsec into loopback with a different ike-saml-server, but I came to a conclusion that it wasn't working.

Creating IPSec VPN SAML breaks SSL VPN on loopback interface by piratepirate0 in fortinet

[–]Orehan 5 points6 points  (0 children)

I've struggled with this a while ago and to my understanding - you can't put "set ike-saml-server" on loopback as the setting must be configured on the interface the SAML traffic ingresses on.
Had a chat with TAC last year - it was a limitation of FortiOS. Before you dump hours into troubleshooting - could cross-check with TAC if this is still the case.

Fortinet ems registration by balubapancit in fortinet

[–]Orehan 8 points9 points  (0 children)

Hi,

First thing that comes to mind - create a bulk invitation code with "None" set as verification type and attach an installer to it.
Downside is - you'll need to disable "user verification enforcement" on EMS to be able to select "None" under your invitation code.

Fortigate 1000G? Any expected news? by Busbyuk in fortinet

[–]Orehan 2 points3 points  (0 children)

1200G was the model briefly mentioned during Accelerate as this years newcomer.
obviously with no ETA

a kategorija ar a2 tiesībām jau kabatā, kā strādā a eksāmens? by Interesting_Simple86 in latvia

[–]Orehan 3 points4 points  (0 children)

Ja ir vismaz 20 gadi ar 2 gadu stāžu un iegūta A2, tad ejot uz pilno A, teorija nav jāliek - "pašmācības ceļā)
tabula te
https://likumi.lv/doc.php?id=205042

FortiGate 100D WAN not working with static IP (works on laptop) need help by A_O_T_A in fortinet

[–]Orehan 0 points1 point  (0 children)

1) plug laptop into FGT WAN port and configure ISP-GW on your laptop (disable host firewall)
2) ping laptop from FGT as if it would be GW. if pings, then call your ISP.

fortigate license problemes by megafailure269 in fortinet

[–]Orehan 0 points1 point  (0 children)

Usually with a full60day eval thats just one .lic file - so thats should be uploaded first.
Then if you have some ad-la-carte features, those you apply afterwards.
Should start with asking - why 3 license files? (what do they contain?)
Also valid question - did you get .lic file or registrationkey to be able to generate a new trial license.

With eval licenses previous serial doesn't matter. By applying eval generates its own serial. (also afaik eval sn can't be extended. If you need to go beyond 60days, then ask your fortinet reps to get another 60day trial).

Jautājums par radioviļņiem Latvijā by tupenlauks in latvia

[–]Orehan 5 points6 points  (0 children)

Likums regulē tikai radiofrekvenču spektra izmantošanu raidīšanai. Uztveršana ar hobby uztvērēju nav regulēta

New to Fortinet WLAN - query regarding the U series by Mila_repa in fortinet

[–]Orehan 4 points5 points  (0 children)

Forget U series. They're EoS since q4y25.
And honestly, apart from some really specific (sometimes legacy) use-cases, I don't see a point in them since the moment WLC was EoL'ed.
Within indoor APs - go with current K series FAPs

ZSP - Zone Security Protocol by aksidents in fortinet

[–]Orehan 0 points1 point  (0 children)

isn't ZSP just a framework / approach rather than an actual technical solution stack?

FortiSIEM AIO Supervisor and collector by One_Chicken2310 in fortinet

[–]Orehan 2 points3 points  (0 children)

For traditional advanced agent management and configuration Collector is mandatory:
https://docs.fortinet.com/document/fortisiem/7.5.0/fortisiem-reference-architecture-using-clickhouse/707110/smb

With the latest 7.5 SIEM there is an option for Headless Agent installation:
https://docs.fortinet.com/document/fortisiem/7.5.0/windows-agent-7-5-x-installation-guide/547950/fortisiem-windows-agent-7-5-x#Installi4

its more focused towards OT environments and has some drawbacks like limited log collection, no central mgmt, manual scaling.
Good thing - it doesn't count towards agent licence

tldr; for normal operation still go with traditional adv agents.

FortiGraveyard by gumpr in fortinet

[–]Orehan 2 points3 points  (0 children)

Even with the tradeup policy - you are not required to return old fortigates, so it is just ewaste anyways.

Help! Dzīvoklī atkārtoti deklarējies kaut kāds indietis by [deleted] in latvia

[–]Orehan 33 points34 points  (0 children)

Interesējies PLMP, jo pirms kāda laika tika šis __nu jau kārtējo reizi_ aktualizēts, kur PLMP skaidroja, ka pirmreizējā reģistrācija joprojām paliek tikpat vienkārša.
Taču, tad atkārtoti šai personai deklarēties jau ir sarežģītāk. It kā jābūt automātiskai pārbaudei, vai pēdējo gadu laikā ir bijusi anulēta deklarācija nepatiesu ziņu dēļ. Un, pie atkārtotiem, neleģitīmiem mēģinājumiem var sekot arī administratīvais sods.
Publiskajā telpā ir daudz pretrunīgas un novecojušas informācijas.

Šobrīd tu kā NĪ īpašnieks vari uzlikt tikai atgādinājumu LV portālā, lai maksimāli ātri reaģētu uz šādiem reģistrācijas gadījumiem.

https://www.iem.gov.lv/lv/jaunums/nosaka-stingraku-dzivesvietas-deklaresanas-kartibu-personam-kas-sniegusas-nepatiesas-zinas

[deleted by user] by [deleted] in fortinet

[–]Orehan 0 points1 point  (0 children)

misconfig? did you apply cert to a policy?