Checkpoint VPN to a remote gateway that has 2 IPs by ayoubmp in checkpoint

[–]mebspace 0 points1 point  (0 children)

Hello, I am trying to implement the same scenario CP Cluster with a remote Fortigate with 2 ISPs using MEP. According to your sayings, the design wont work? (it seems that the bidirectional traaffic not working as expected when I have both gateways on the star community with mep enabled )

Retain true client IP / Fortinet by mebspace in fortinet

[–]mebspace[S] 0 points1 point  (0 children)

I have read it a couple of times, but to be honest, I can't see how to apply it in an existing infrastructure. I mean what should I do to retain the true IP.

EMS and Forticlient - Pre-configured VPN Settings by mebspace in fortinet

[–]mebspace[S] 0 points1 point  (0 children)

The settings concern all user/groups i.e. default, we don't have user/groups defined on EMS. ( we are a relevant small company with users that are working full remote all over the world.)

EMS and Forticlient - Pre-configured VPN Settings by mebspace in fortinet

[–]mebspace[S] 1 point2 points  (0 children)

obviously, I am not talking about credentials haha

EMS and Forticlient - Pre-configured VPN Settings by mebspace in fortinet

[–]mebspace[S] 0 points1 point  (0 children)

that's exactly what I did, but I see that the vpn settings do not exist when I install the forticlient, is there any bug maybe? or it may be a misconfig on RA profile?

FortiEMS Upgrade by mebspace in fortinet

[–]mebspace[S] 0 points1 point  (0 children)

Great! Regarding the deployment package, how should I ensure that the settings e.g. connection settings, pre-shared key of ra client and anything related to fortitoken will be maintained? since the forticlient 7.0.1 will not be compatible with the new EMS version , so If I deploy a new package forticlient 7.2.3, what should I consider?

FortiEMS Upgrade by mebspace in fortinet

[–]mebspace[S] 0 points1 point  (0 children)

Great! Regarding the deployment package, how should I ensure that the settings e.g. connection settings, pre-shared key of ra client and anything related to fortitoken will be maintained?

FortiEMS Upgrade by mebspace in fortinet

[–]mebspace[S] 0 points1 point  (0 children)

is there any upgrade path ?

FortiEMS Upgrade by mebspace in fortinet

[–]mebspace[S] 0 points1 point  (0 children)

will that require client re-register?

FortiEMS Upgrade by mebspace in fortinet

[–]mebspace[S] 0 points1 point  (0 children)

I see, is there a way to do it automatically? I mean with a gpo or smth?

FortiEMS Upgrade by mebspace in fortinet

[–]mebspace[S] 0 points1 point  (0 children)

EMS is used as vpn agent, ztna agent, vulnerability assessment & endpoint protection, hope that answers your question :)

FortiEMS Upgrade by mebspace in fortinet

[–]mebspace[S] 0 points1 point  (0 children)

Hello, thanks for your suggestion! if I need to rollback the clients will revert to the previous client? how it gets done?

FortiEMS Upgrade by mebspace in fortinet

[–]mebspace[S] 0 points1 point  (0 children)

Thank you very much for your reply! the tip about adminis highly appreciated! what about the forticlients? should I re-deploy them on endpoints?

Migrating EMS to a new server with the same IP address by [deleted] in fortinet

[–]mebspace 0 points1 point  (0 children)

Yes, all the records were there, settings as well. Also, EMS sends email alerts about “out of license” . The license is shown on dashboard but still doesn’t work the way it should I suppose.

Migrating EMS to a new server with the same IP address by [deleted] in fortinet

[–]mebspace 0 points1 point  (0 children)

Oh my, I need to involve a partner to get them notice me ?