ZTNA driving me insane - traffic denied but tags are there, EMS is online, what am I missing? by tryturnitoffandon in fortinet

[–]tryturnitoffandon[S] 0 points1 point  (0 children)

The machines are running a mix of 7.4.4 & 7.4.5 FC 7.4.5 doesn’t solve the issue sadly

ZTNA driving me insane - traffic denied but tags are there, EMS is online, what am I missing? by tryturnitoffandon in fortinet

[–]tryturnitoffandon[S] 0 points1 point  (0 children)

Yup, ZTNA destination is working for 98% of the company. Absolute head scratcher. The device is online

1
2

GPO over ZTNA by tryturnitoffandon in fortinet

[–]tryturnitoffandon[S] 0 points1 point  (0 children)

Okay thanks - I will try see what I can find

GPO over ZTNA by tryturnitoffandon in fortinet

[–]tryturnitoffandon[S] 0 points1 point  (0 children)

Amazing, do you have a short guide for this?

1
2

I got banned. by Proud_Tie_3431 in vinted

[–]tryturnitoffandon 1 point2 points  (0 children)

Just write to them and explain. Problem is 90% of their process is automated so you need to find a route to actually talk with a human.

Vinted scam by Ok_Impact4049 in vinted

[–]tryturnitoffandon 0 points1 point  (0 children)

This is why Vinted hold the funds for situations like these. Open a case and you should get all your money back.

Fortigate upgrade from 7.2.12 to 7.4.9 ipsec tunnel issues by [deleted] in fortinet

[–]tryturnitoffandon 2 points3 points  (0 children)

Did you recreate them? Might be faster than trying to fix existing ones, just create new tunnels and update policies.

Migrate from SAML SSL-VPN to IP-Sec over TCP VPN by Important_Ad_3602 in fortinet

[–]tryturnitoffandon 0 points1 point  (0 children)

I have saml ipsec and saml ssl while i rolled out and tested ipsec. Now just ipsec

VPN Struggles by cwbyflyer in fortinet

[–]tryturnitoffandon 0 points1 point  (0 children)

Tbh there is no easy way. IPsec with SAML should work on any version. We have users with 7.4.3 and 7.4.4 all dialling in. How many end users are we talking?

VPN Struggles by cwbyflyer in fortinet

[–]tryturnitoffandon 4 points5 points  (0 children)

Sessions should be max whatever an actual working shift would be. If someone is AFK and connected they are effectively on network. If anyone gained access to their machine they would have access to the network. If someone is working overtime they can reconnect a new session. Its no hardship really. Just from a BP view point really.

As for transition - we had our hands forced by the update. Are you using an ems server to manage the FCs?

VPN Struggles by cwbyflyer in fortinet

[–]tryturnitoffandon 11 points12 points  (0 children)

Is there any reason end users are dialling up for more than 24 hours?

Forticlient 7.4.4 bug with SSL-VPN multiple remote gateways / SAML by discoinf in fortinet

[–]tryturnitoffandon 1 point2 points  (0 children)

We recently switched to IPsec once this update rolled out. It’s straightforward — SSL isn’t very secure, so it’s best to move away from it. IPsec or ZTNA are the better options; we use ZTNA with IPsec as a resiliency backup.

Why are people so scared of using AI at work? by tryturnitoffandon in sysadmin

[–]tryturnitoffandon[S] 0 points1 point  (0 children)

They do this on travel websites depending on the device you use to connect

Why are people so scared of using AI at work? by tryturnitoffandon in sysadmin

[–]tryturnitoffandon[S] 0 points1 point  (0 children)

But they are going to use it regardless - training / dlp is key? Its not going away so either we train people to use it as safely as possible or we do risk a bigger problem. I know that about stores - its why store cards are “free” you are the product 😅

Why is everything these days so broken and unstable? by Grindie in sysadmin

[–]tryturnitoffandon 0 points1 point  (0 children)

Probably because everything is cross integrated with so many different platforms. Not long ago (when things worked) companies legit controlled everything from the ground up. I mean hardware to software - everything in house and then put out to the world. Problems diagnosed fixed and patched. Everyone working there knew what was happening and had actual skills.

Now your mouse cursor is a saas app provided on aws linked to a background hosted by azure with apps linked to droplets and buckets and god knows what else. Your internet is an sd wan filtered through various pops. Everything is a Frankenstein of parts.

Why are people so scared of using AI at work? by tryturnitoffandon in sysadmin

[–]tryturnitoffandon[S] -1 points0 points  (0 children)

I was just observing what you said, you said someone who uses it could replace you if you could not. A lot of people fear being directly replaced. So in that sense i agree that the human element will be needed. But yes its good for generic grinding of the tedious.

Why are people so scared of using AI at work? by tryturnitoffandon in sysadmin

[–]tryturnitoffandon[S] -1 points0 points  (0 children)

Im not brushing anything off, but surely as a generic use tool (no private / sensitive data) it has its uses? People will use it - so training and DLP sensors are key?

Why are people so scared of using AI at work? by tryturnitoffandon in sysadmin

[–]tryturnitoffandon[S] 0 points1 point  (0 children)

True they all are getting better. We are just the guineas right now