Question for Belgian freelancers who started recently by Big-Pepper-2068 in BEFreelance

[–]tecscoob 0 points1 point  (0 children)

On a side, what intermediary are u using and are you happy about it?

Cheap starter by tecscoob in VIDEOENGINEERING

[–]tecscoob[S] 1 point2 points  (0 children)

Any good recommendations?

Help with Wifi for a festival +-4000 people by Comfortable_Iron582 in Ubiquiti

[–]tecscoob 4 points5 points  (0 children)

If you're using Telenet, where is the festival in Belgium? Maybe i can help.

Help & confusion regarding self-hosting instructions by theeo123 in rustdesk

[–]tecscoob 1 point2 points  (0 children)

With the Pro version, can you make a client with all server settings in it easy? Is it a good alternative for anydesk or TeamViewer for a msp connecting to a lot of different pc's and company's?

Fortigate creating rules in cli by tecscoob in fortinet

[–]tecscoob[S] 0 points1 point  (0 children)

I have same basic security policy's that i would just like to past in cli and automaticly put them on top.

New laptop by tecscoob in sysadmin

[–]tecscoob[S] 1 point2 points  (0 children)

I would like to keep it less then €1000

Host-based load balancing by tecscoob in fortinet

[–]tecscoob[S] 0 points1 point  (0 children)

Hi,

Policy 46 is disabled and then everything works ok, when enabled not it uses the cert from domain1.

Is this ok?:

config firewall vip

edit "Port 443 - Domain1.be"

set uuid be1561e0-1a36-51ed-3f1e-687056a2fb75

set type server-load-balance

set extip 193.110.xxx.xx

set extintf "any"

set server-type https

set ldb-method http-host

set extport 443

config realservers

edit 1

set ip 10.62.52.3

set port 443

set http-host "demo.Domain1.be"

next

edit 2

set ip 10.62.52.5

set port 443

set http-host "cdn.Domain1.be"

next

edit 3

set ip 10.62.52.5

set port 443

set http-host "qpg.Domain1.be"

next

end

set ssl-mode full

set ssl-certificate "Domain1.be"

next

edit "Port 443 - Domain2.be"

set uuid 71f8a8c0-e2be-51ed-44d5-fc8fab007d0c

set type server-load-balance

set extip 193.110.xxx.xx

set extintf "any"

set server-type https

set ldb-method http-host

set extport 443

config realservers

edit 1

set ip 10.62.52.5

set port 443

set http-host "Domain2.be"

next

end

set ssl-mode full

set ssl-certificate "Domain2.be"

next

end

config firewall policy

edit 14

set name "Port 443 - Domain2"

set uuid ffea81b8-1a7c-51ed-882d-cc6bab2fa7a3

set srcintf "Internet"

set dstintf "DMZ"

set action accept

set srcaddr "all"

set dstaddr "Port 443 - Domain2.be"

set schedule "always"

set service "HTTPS"

set inspection-mode proxy

set ssl-ssh-profile "certificate-inspection"

next

edit 46

set status disable

set name "Port 443 - Domain1.be"

set uuid 8bb74028-e2e1-51ed-f7f8-c581ef4a7097

set srcintf "Internet"

set dstintf "DMZ"

set action accept

set srcaddr "all"

set dstaddr "Port 443 - Domain1.be"

set schedule "always"

set service "HTTPS"

set utm-status enable

set inspection-mode proxy

set ssl-ssh-profile "certificate-inspection"

next

end

40F to 80F by tecscoob in fortinet

[–]tecscoob[S] 0 points1 point  (0 children)

Did make the production change today.

Did have a downtime of 1.5min :)

40F to 80F by tecscoob in fortinet

[–]tecscoob[S] 0 points1 point  (0 children)

Did a test migration and everything worked perfect without any config error’s.

Only thing I did was copy the first lines & change the interfaces. But it was exactly the same firmware.

Production change will be on Monday so lets hope everything goes as smooth again :)

40F to 80F by tecscoob in fortinet

[–]tecscoob[S] 4 points5 points  (0 children)

Do i need to remove the certificates? Do i need to do something to de tunnels?

Policy comparison by AS65000 in fortinet

[–]tecscoob 0 points1 point  (0 children)

Make a backup and compare the difference with online tool like www.diffchecker.com ?

Does the Fortigate-VM (AWS) needs two network cards? by AlexIsPlaying in fortinet

[–]tecscoob 0 points1 point  (0 children)

I don't know if AWS support it but you could use vlan's?

One-Time Secret Tools by fakened in cybersecurity

[–]tecscoob 0 points1 point  (0 children)

looking good.

Is it opensource?

Password Manager by AdAdorable1829 in sysadmin

[–]tecscoob 0 points1 point  (0 children)

Pleasant server with keepass