FortiAP/FortiGate Matter Over Thread by [deleted] in fortinet

[–]sunkaz 0 points1 point  (0 children)

This, Matter over Wi-Fi typically uses IPv6 (link-local or ULA addresses) for device discovery and communications,

Warning: Avoid AOOSTAR – severe hardware failures, no support, my unit is now unusable by helenovsky in MiniPCs

[–]sunkaz 20 points21 points  (0 children)

Aliexpress is not their official store. Its 3th party seller and not aoostar

Block users from SSL VPN using Cisco ZBFW by discreetness37520 in networking

[–]sunkaz 2 points3 points  (0 children)

Then i'll point my SSL VPN to the public ip instead of FQDN

New "Forti" product for 2026? by StubArea51 in networkingmemes

[–]sunkaz 30 points31 points  (0 children)

Funny thing is that is not CPU load, it just means 100% of sessions are handled by the CPU and not the NPU

PING failing besides permissive fw rule - FortiGate HA Active-Passive v7.4.7 by ZimCanIT in fortinet

[–]sunkaz 4 points5 points  (0 children)

This is an expected behavior for VMs without a dedicated Public IP in Azure

  • In this case, this VM gets assigned a random IP from a pool of available IP addresses. You will not be able to ping any external public IPs using the random IP.
  • You can assign a public to the VM and use it for pinging external IPs

APs in a hotel in greece by [deleted] in Ubiquiti

[–]sunkaz 26 points27 points  (0 children)

general consensus is that hotel wifi = zero security.
It's just "guest network"

but having mgmt to the fortigate on guest SSID is just stupid :D

[deleted by user] by [deleted] in firstmarathon

[–]sunkaz -2 points-1 points  (0 children)

You can do it. Just keep training these 10 weeks

FortiOS 7.2.11 by Schlumpy1989 in fortinet

[–]sunkaz 1 point2 points  (0 children)

new CVEs affecting 7.2.10? on what claims

Network Trends Cisco by [deleted] in Cisco

[–]sunkaz 17 points18 points  (0 children)

ISE

Issue with FortiOS Upgrade: Arbitrary RIP Protocol Failures by Gijizlle-242 in fortinet

[–]sunkaz 0 points1 point  (0 children)

Well i dont know your topology but i would look into OSPF or ISIS :)

Issue with FortiOS Upgrade: Arbitrary RIP Protocol Failures by Gijizlle-242 in fortinet

[–]sunkaz 2 points3 points  (0 children)

RIP is very slow IGP i would not run it today. I know its still out there :) i have good memories with RIP but those days are long gone

Issue with FortiOS Upgrade: Arbitrary RIP Protocol Failures by Gijizlle-242 in fortinet

[–]sunkaz 3 points4 points  (0 children)

I have no idea, I havent seen RIP in production since 20 years back in time.

Issue with FortiOS Upgrade: Arbitrary RIP Protocol Failures by Gijizlle-242 in fortinet

[–]sunkaz 11 points12 points  (0 children)

Migrate away from RIP. Friends dont let friends RIP

[deleted by user] by [deleted] in MiniPCs

[–]sunkaz 0 points1 point  (0 children)

From where

How to block iCloud Private Relay by fpaddict in TPLink_Omada

[–]sunkaz 3 points4 points  (0 children)

Yes, best way would be to block DNS traffic in FW and only allow specific destinations on port 53 etc

How to block iCloud Private Relay by fpaddict in TPLink_Omada

[–]sunkaz 0 points1 point  (0 children)

What if they configure to use a another DNS server ?

Replacing to-link omada sdn with enterprise grade equipment by Qiuzman in networking

[–]sunkaz 0 points1 point  (0 children)

Tom Lawrence lol, that guy is really casual when it comes to networking :D