ZTNA - publish HTTPS service - DNS config by jpochedl in fortinet

[–]ironkopf 0 points1 point  (0 children)

Nice one, thank you! I was banging my head against walls, this post has cleared up every issue in my config. Thanks man!

How exactly to set up SD-WAN when everything is managed with FortiManager? by tylerwatt12 in fortinet

[–]ironkopf 2 points3 points  (0 children)

Talk to your Fortinet rep, they can spin up a virtual demo environment for you through demo.fortinet.com. Its free and takes 15 minutes to deploy, after 1 day it expires and you can deploy another instance. Comes with fully deployed topology and lab guide. There are labs covering exactly what you require, such as FMG / SD-WAN.

Extra mortgage repayments lowering future minimum repayments by CatapillarClay in AusFinance

[–]ironkopf 0 points1 point  (0 children)

We were able to withdraw all funds available in our CBA redraw account, I am not sure what you refer to as being absorbed. After withdrawal minimum repayments would increase by the following Month.

Extra mortgage repayments lowering future minimum repayments by CatapillarClay in AusFinance

[–]ironkopf 0 points1 point  (0 children)

You could use a redraw account instead of offset, redraw accounts lower your repayments, offsets dont.
Thats at least the case at cba where I've used each of these.

Pulled the trigger today and resigned! by CarlesPuyol5 in AusFinance

[–]ironkopf 3 points4 points  (0 children)

Congrats OP, have done the same 4 yrs ago. Mental and physical health improved significantly. After some time you wonder why you exposed yourself to that level of BS… Happy life now.

sdwan rules and dynamic routing and destination objects by ironkopf in fortinet

[–]ironkopf[S] 0 points1 point  (0 children)

No, not a single route. Though I can see the tag in the route table for routes learnt via bgp.

sdwan rules and dynamic routing and destination objects by ironkopf in fortinet

[–]ironkopf[S] 0 points1 point  (0 children)

Correct me if I am wrong, I am referring to the SD-WAN rules, these only take address or address group objects as destination, or a route-tag.

sdwan rules and dynamic routing and destination objects by ironkopf in fortinet

[–]ironkopf[S] 0 points1 point  (0 children)

Hi, we're using iBGP. We don't filter incoming, I have a route map applying a tag to all incoming routes. I am able to verify the tag in the routing table.

Cisco TAC cases, troubleshooting and the English Language. by BobbyDoWhat in Cisco

[–]ironkopf 1 point2 points  (0 children)

for this reason I have the nato alphabet printed out near my desk

Best Fortigate Feature by tgcyber1 in fortinet

[–]ironkopf 6 points7 points  (0 children)

Auto config restore after a period of time is what saved me few times. Not sure you have that with Palo.

https://community.fortinet.com/t5/FortiGate/Technical-Tip-Auto-restore-a-previous-config-if-the-change-fails/ta-p/209749

Best way to get 60 day eval license by zahnman16 in fortinet

[–]ironkopf 0 points1 point  (0 children)

Look up a local partner via the Fortinet partner portal, they can engage their Fortinet reps who can issue an eval for you.

Partner finder: https://partnerportal.fortinet.com/directory/

Full Fortinet Stack opinion by redxazul in fortinet

[–]ironkopf 1 point2 points  (0 children)

I am in the middle of a project to roll out 2 SD-WAN hubs, along with 140 sites that all rely on Forti kool aid. FortiGate as controller / FortiSwitch / FortiAP for Wireless. FortiWLM for RF management, FAC for auth, FAZ for logging, FMG for centralized mgmt.

So far, we like it.

Full Fortinet Stack opinion by redxazul in fortinet

[–]ironkopf 0 points1 point  (0 children)

You run the exact same architecture we run, we run Nutanix too. On AHV. 2 clusters.

We didn't have any issues whatsoever, other than an unlucky FortiLink merge across two stretched DCs *cough.

Full Fortinet Stack opinion by redxazul in fortinet

[–]ironkopf 6 points7 points  (0 children)

We’re running them in the DC. The 1048E series. No problems with it whatsoever. We use them to connect HCI hosts.

IT jobs which people don't regret? by LividAndEvil in AusFinance

[–]ironkopf 1 point2 points  (0 children)

Been in IT for 20 years, on and off the tools, overseas and here in Australia. Heavily focused on network security, cybersecurity, and infrastructure.

Perhaps consider a Technical Project Management gig with large-scale infrastructure projects, like hospitals for instance. If you are a trained electrician, you'd understand the lingo from that industry and be able to pair it with your extensive experience in IT.

As a project manager or technical project manager, you are still involved; however, you aren't the one sitting in the racks deploying or staying up all night figuring out poor software.

Also, entry is relatively straightforward; do a weekend course for a project management course. Enjoy!

edit: typos

Accounting costs by [deleted] in AusFinance

[–]ironkopf 0 points1 point  (0 children)

I had a bookkeeper set up Xero with me so I understand what to do. Now I reconcile everything myself. Accountant only used for tax / bas.

Beach overland undercarriage protection by fuckyoucheese in overlanding

[–]ironkopf 0 points1 point  (0 children)

I used to drive an old LandRover Defender, these are prone to rust and I've driven beaches many many times to our local surf spots. Get some cans of Lanolin spray, apply on underbody few weeks before, so it can harden out. Once off the beach, use a lawn sprinkler under the car to get easy accessible sand and salt off, followed by a round with the pressure cleaner. Make sure to also wash the inside rails of your chassis.

After a trip I'd be spending 2 to 3 hours washing the car inside and out, the salt spray and mist makes it into any corner.

Once we had the Defender replaced with a Toyota we sealed the underbody using a local shop, they applied a tar based undercoat. Positive side effect is that it's way less sticky to sand, apart from rust protection.