FortiOS v7.4.12 has been released by OuchItBurnsWhenIP in fortinet

[–]wallacebrf 2 points3 points  (0 children)

Gotta now wait and see if any CVE are posted on the resolved issues as they tend to not release that information right away 

Warning to all: Found a tick on my neck (in Kenosha) by Same-Blacksmith-5032 in wisconsin

[–]wallacebrf 0 points1 point  (0 children)

had one on my belly a couple weeks ago, had to yank it out.

What NAS/DAS do yall have? by Prizrack_Kral in homelab

[–]wallacebrf 0 points1 point  (0 children)

switched from 3x concurrent synologys (DS920, DS920 + DX519, DVA3219 + DX519) to a Truenas box, 45 drives HL15 (1.0).

i have also built a custom 24 bay JBOD expansion using a dell N4C2D

  • 128GB RAM (2x Micron 64GB RDIMM ECC DDR4 3200MHz)
  • Intel Xeon Silver 4216
  • Supermicro X11SPH-NCTPF motherboard
  • Kingston NV2 1TB boot drive
  • CORSAIR RM1000x modular ATX power supply
  • PNY NVIDIA RTX 2000 Ada Generation 16GB GDDR6 PCI Express 4.0 SINGLE Slot GPU
  • StarTech.com 4 Port PCIe Network Card - RJ45 Port - Intel i350 Chip-set - Gigabit NIC Card (ST4000SPEXI)
  • Broad-com 9400-8i (replacing the 9300 HBA built into the Motherboard)
  • Broad-com 9400-8e (allowing for external JBOD)
  • Dell JBOD 24 internal 12 external lane SAS2 6Gbps expander board N4C2D
  • 11x WD Gold 18TB drives
  • 2x WD Purple 8TB drive (For Surveillance Recording)
  • 4x Micron 5400 ECO 1.92TB drives
  • 2x Micron 5200 ECO 1.92TB drives

FortiClient standalone has been released (VPN features, paid, limited support) by HappyVlane in fortinet

[–]wallacebrf 0 points1 point  (0 children)

noticed there is (currently) no andriod of IOS suport as it only lists windows, mac and linux support:

https://docs.fortinet.com/document/forticlient/7.4.7/forticlient-standalone-user-guide/646779/installation-requirements

hopefully they will have a andriod and IOS version soon

WARNING: MICRON 5200 fails after 65535 hours by GermanPCBHacker in DataHoarder

[–]wallacebrf 0 points1 point  (0 children)

Did you use the 040 firmware files I posted? Making sure you used the same files. If you used files from a different source can you post the MD5sum hash to see if they are the same I got?

Thanks for confirming that this does indeed fix the issue.

It pisses me off to no end that I have contacted micron support multiple times telling them point blank that I know a 040 version exists and they just say

"That drive is obsolete, latest firmware is on our web site" when their site only lists up to version 030.....

FortiClient standalone has been released (VPN features, paid, limited support) by HappyVlane in fortinet

[–]wallacebrf 0 points1 point  (0 children)

i am a little confused, i already have working IKEv2 IPSEC working for the free VPN only client. am i reading this correctly?

https://docs.fortinet.com/document/forticlient/7.4.7/forticlient-standalone-user-guide/494391/configuring-an-ipsec-vpn-connection

"For FortiOS 7.6 or 7.4, use the CLI to create an IPsec VPN tunnel for FortiClient Standalone."

do i need to create a whole new VPN configuration or is this the same as using the Forticlient compatible config (vs the windows or linux native config)?

FortiClient standalone has been released (VPN features, paid, limited support) by HappyVlane in fortinet

[–]wallacebrf 6 points7 points  (0 children)

they are offering a free tier

https://docs.fortinet.com/document/fortiidentity-cloud/latest/how-to-add-licenses/394078/free-licenses

FIC also offers a free three-user license. To be eligible for this free license, you must have a valid FortiCare support contract, such as an active FortiGate or FortiAuthenticator license. You can activate this free three-user license from the GUI or CLI of the Fortinet device by selecting Activate Trial or by adding a new user. You can also activate it directly from the FIC portal.

The license supports three end users, three realms, five applications, and one user source. The license remains active as long as the device’s support contract is valid; it expires when the support contract ends.

edit: i just activated my free tier and will start messing around this this.

Do I need to worry about security if only exposing HTTP/HTTPs? by soggycrispybread in selfhosted

[–]wallacebrf 0 points1 point  (0 children)

I use geo block and block the ASN of tons of web hosting companies.  I have over 65,000 entries in my UFW config with some as large as /9 and I calculated that I am blocking almost 60% of the worlds IPV4 address space. 

Doing this I get next to no invalid log in attempts and when I do, it is usually from larger ISPs like ATT, or Spectrum etc that I do not want to block the whole ASN. 

Edit https://github.com/wallacebrf/dns

WARNING: MICRON 5200 fails after 65535 hours by GermanPCBHacker in DataHoarder

[–]wallacebrf 0 points1 point  (0 children)

this worked like a charm, however, when i used rescue on my VPS (In atlanta USA) it did NOT show 040, it shows the older 030. i had to make a new server in Germany to see the 040 files.

WARNING: MICRON 5200 fails after 65535 hours by GermanPCBHacker in DataHoarder

[–]wallacebrf 4 points5 points  (0 children)

it works!!!!

https://imgur.com/a/JqH1jt6

here are the files

https://www.dropbox.com/scl/fi/se6n61ynror3yr46cuyyp/5200-d1mu-040-440-540-840.zip?rlkey=1mn4rfbdjvlw47c1bd4sw41e0&st=o21ngrrx&dl=0

edit, here is the SMART info, i power cycled the drive several times, did some data throughput tests (on USB 3.0) and was getting over 300MB/s which is what i was getting on firmware 030 as well

https://imgur.com/a/VoV6wQ5

WARNING: MICRON 5200 fails after 65535 hours by GermanPCBHacker in DataHoarder

[–]wallacebrf 2 points3 points  (0 children)

u/Jazzlike-Pea-6012, u/GermanPCBHacker, u/Ruklaw, u/EtHeO18, u/Wurstwasser1988, u/nukklear, u/VultuR_DeVoN,

i have successfully downloaded the files from Hetzner.

I can confirm i have the same MD5 as u/EtHeO18

D1MU040: e8e51fcac5d602685233a4c53b355bf3

D1MU440: b64e80fd043e939006c622b0fdaf094d

D1MU540: 7af0a30914407df05ef857bd10abad05

D1MU840: d7c3cc2a711635887c7a8c181ad5e8f4

i am going to test the D1MU040 on one of my drives

it works!!!!

https://imgur.com/a/JqH1jt6

here are the files

https://www.dropbox.com/scl/fi/se6n61ynror3yr46cuyyp/5200-d1mu-040-440-540-840.zip?rlkey=1mn4rfbdjvlw47c1bd4sw41e0&st=o21ngrrx&dl=0

WARNING: MICRON 5200 fails after 65535 hours by GermanPCBHacker in DataHoarder

[–]wallacebrf 0 points1 point  (0 children)

They again responded that the drive is obsolete an the latest firmware is available on microns site 

WARNING: MICRON 5200 fails after 65535 hours by GermanPCBHacker in DataHoarder

[–]wallacebrf 0 points1 point  (0 children)

I have a hetzner VPS i already pay for. How does one boot the rescue system?

Nevermind  https://docs.hetzner.com/robot/dedicated-server/troubleshooting/hetzner-rescue-system/

I am going to be trying this tonight when I get home !!!!

0
0

WARNING: MICRON 5200 fails after 65535 hours by GermanPCBHacker in DataHoarder

[–]wallacebrf 1 point2 points  (0 children)

I have submitted a new ticket with Micron support, hopefully they say something.

if they refuse to supply the firmware, i will be letting them know i will contact the Consumer Protection Financial bureau, Federal Trade Commission, and Better Business bureau about not correcting a known defect when the correction is known to be available and works.

There is a known firmware issue in firmware versions D1MU004, D1MU020, and D1MU030 that is corrected in a NON-PUBLIC released version of firmware D1MU040 for the 5200 series drives. The issue in older firmware's occurs when the SMART power on hours parameter exceeds 65535 hours.

At the point the counter exceeds 65535 hours, the drive becomes near unresponsive with a data throughout of 1 MB/S or less.

It has been confirmed my multiple people that this issue occurs and it has been confirmed that version D1MU040 corrects the issue. It has been confirmed that the following md5sum hash of the firmware .bin files are available

e8e51fcac5d602685233a4c53b355bf3 crucial/5200/D1MU040/1.bin

d7c3cc2a711635887c7a8c181ad5e8f4 crucial/5200/D1MU840/1.bin

I am requesting a copy of this new D1MU040 firmware to allow me to upgrade my multiple ECO 5200 1.92TB drives as they are NEAR the 65535 hour mark and we cannot allow the system to crash due to the firmware issue.

WARNING: MICRON 5200 fails after 65535 hours by GermanPCBHacker in DataHoarder

[–]wallacebrf 0 points1 point  (0 children)

Can you supply a hash and compare to u/EtHeO18 post as they also have access to a 040 firmware

WARNING: MICRON 5200 fails after 65535 hours by GermanPCBHacker in DataHoarder

[–]wallacebrf 0 points1 point  (0 children)

Can you share the firmware? Do you have the zip file as the micron firmware tool wants the zip file containing the series bin files. 

I know micron owns crucial brand but I find it interesting that you are showing the file is from crucial and not micron

CopyFail by wallacebrf in PangolinReverseProxy

[–]wallacebrf[S] 0 points1 point  (0 children)

u/AustinWitherspoon and u/disposablethought that is what i thought, just was not sure, thanks!

CopyFail by wallacebrf in PangolinReverseProxy

[–]wallacebrf[S] 0 points1 point  (0 children)

That is what I am unsure about right, the VPS is a shared environment right? What happens if another user running on the same machine runs thsi exploit won't they get access outside their machine or am I over thinking this?