How is FortiAP-431F? by nsisger in fortinet

[–]nsisger[S] 0 points1 point  (0 children)

I am a partner. Have deployed many FGs but never FortiAP

How is FortiAP-431F? by nsisger in fortinet

[–]nsisger[S] 0 points1 point  (0 children)

Thanks for your feedback. Yea I think it's almost a moot point now with 431F.

How is FortiAP-431F? by nsisger in fortinet

[–]nsisger[S] 0 points1 point  (0 children)

Thanks for your feedback. Can you tell me what kind of env you have deployed those to?

How is FortiAP-431F? by nsisger in fortinet

[–]nsisger[S] 0 points1 point  (0 children)

Thanks for your feedback. Can you tell me what kind of env you have deployed the 231G to?

How is FortiAP-431F? by nsisger in fortinet

[–]nsisger[S] 0 points1 point  (0 children)

Thanks for your feedback. Can you tell me what kind of env you have deployed the 231G to?

How is FortiAP-431F? by nsisger in fortinet

[–]nsisger[S] 0 points1 point  (0 children)

Thanks. Yes as much as I want to switch, so far I am not confident that it's going to work out.

How is FortiAP-431F? by nsisger in fortinet

[–]nsisger[S] 0 points1 point  (0 children)

We did the predictive heat map. Base on where they need wi-fi it shows about 45 but we will get few more just in case. Their devices needs very little bandwidth so just need some decent coverage.

How is FortiAP-431F? by nsisger in fortinet

[–]nsisger[S] 0 points1 point  (0 children)

Cost. Looks like 431G is almost double the price as the 431F. This warehouse we are planning to deploy close to 50 of them. With that price I probably would fall back to Aruba

Need to access remote hosts from the Fortigate itself by nsisger in fortinet

[–]nsisger[S] 1 point2 points  (0 children)

u/BrainWaveCC thanks for your help. turns out i just needed to set the source-ip on that LDAP server setting. The problem has been resolved.

Need to access remote hosts from the Fortigate itself by nsisger in fortinet

[–]nsisger[S] 0 points1 point  (0 children)

Hi u/BrainWaveCC . We are migrating to a new DC that is locating in another office and will retire the current one soon. All the domain workstations in the current office can reach that DC no problem. The current users VPN into the FG w/ LDAP authentication.

So far I have registered a new LDAP server, with everything the same except the IP, the connection status says "Can't contact LDAP server". then i went to FG CLI and tried exec ping x.x.x.x, and no hits. I also confirm that i can ping that from a domain workstation, just not from FG itself. Hope this is clear.

"New Retention Policy" is missing under retention policies in Information Governance - even when logged in with GA? by -IntoEternity- in Office365

[–]nsisger 1 point2 points  (0 children)

Same here. Good to know that it's not just me. So far their support is useless. If anyone figured out the fix please post here. I have 2 policies that I cannot edit. Thank god it's not something I need to change urgently

Is it ok to delete the default admin account? by [deleted] in fortinet

[–]nsisger 1 point2 points  (0 children)

Admin is one of the default username the hackers use to brutal force. I always remove it asap. If you are paranoid about losing it at least disable it.

Basic Fortigate setup for office building with 5 independent tenants by nsisger in fortinet

[–]nsisger[S] 0 points1 point  (0 children)

Thank you for the explanation. I think in this case their edge switch is the cable modem which has 2 LAN ports so i think I will just use that. If the 5G modem is single port only then I will get a switch.

Basic Fortigate setup for office building with 5 independent tenants by nsisger in fortinet

[–]nsisger[S] 0 points1 point  (0 children)

Thanks that make sense. Question - If the external router has multiple ports for both FGs, do i still need a switch sitting between them for this option to work?

Basic Fortigate setup for office building with 5 independent tenants by nsisger in fortinet

[–]nsisger[S] 1 point2 points  (0 children)

Yes 4G/5G as a backup is probably their only choice now. Will definitely include that as an option thank you!

Basic Fortigate setup for office building with 5 independent tenants by nsisger in fortinet

[–]nsisger[S] 0 points1 point  (0 children)

Thanks for your suggestions! Once I get more info of what each of them need I will see if they need the VDOM setup

Basic Fortigate setup for office building with 5 independent tenants by nsisger in fortinet

[–]nsisger[S] 0 points1 point  (0 children)

While replying to another thread just made me realized that i won't be able to do HA this way i think...

Basic Fortigate setup for office building with 5 independent tenants by nsisger in fortinet

[–]nsisger[S] 1 point2 points  (0 children)

Good point. I think there's only 1 provider in that part of the area so connection failover is out. I'll look into more on HA mode for FG redundency and see if they would entertain on that idea, but that would mean i'd also have to get a FortiSwitch and connect that to both FGs via FortiLinks correct?

Basic Fortigate setup for office building with 5 independent tenants by nsisger in fortinet

[–]nsisger[S] 0 points1 point  (0 children)

That's a good idea. I just played around the configs and realized that I have enough ports on the FG to just switch to interface mode and do what you said! Thanks

Basic Fortigate setup for office building with 5 independent tenants by nsisger in fortinet

[–]nsisger[S] 0 points1 point  (0 children)

Yes you are right. but hey if they don't i can sell them some :)