Web server template with private key export

Per default, the web server template in Microsoft CA does not allow exportation of the private key once installed onto a system. To enable this option you need to create a new WebServer template which allows just that. As we can see from the default WebServer template, the export Private Key is unticked which is […]

Setting up OpenGear ACM5004 for remote access via mobile/Celluar networks

In this guide we will setup an OpenGear ACM5004 for remote mgmt and remote SSH capabilities (serial ports) over the mobile network, utilizing DynDNS to enable easy connection to the device. A fair warning first, I would not use the OpenGear over cellular networks as a permanent solution to access any equipment. The reason being […]

Unattended installation of Check Point appliance

Check Point features an unattended installation mode for fresh installation, which may come in handy if you need to upgrade/install an appliance remotely with an non-technical person onsite. A few limitations to be aware of – Fresh installs only. – Preconfiguration for basic networking can only be done on appliances when installing R77.20 or higher […]

Cisco AP not in bound state and will not join controller

At a customers a new SAP2702I would not join the controller and was stuck in a loop of translating cisco-capwap-controller and renew its IP address. Translating “CISCO-CAPWAP-CONTROLLER”…domain server (172.16.1.120) S Loading http://devicehelper.cisco.com/ca/trustpool ! Loading http://devicehelper.cisco.com/ca/trustpool ! Loading http://devicehelper.cisco.com/ca/trustpool ! Loading http://devicehelper.cisco.com/ca/trustpool ! Not in Bound state. *Mar 1 00:03:37.059: %DHCP-6-ADDRESS_ASSIGN: Interface BVI1 assigned DHCP address […]

Multiple commands in auto-script / set script-variable

Just a quick note about the auto-script functionality and how to run multiple commands, because this had me stomped on a Monday morning. (Thank you FortiNet for your sparse documentation) There is no fancy solution, no special new line characters, no encapsulating the commands in quatation marks and separating them by a delimiter or anything […]

Automated backup of Forti -Gate, -Manager & -Analyzer

Just a quick note on how to automate backup of your FortiGate, FortiAnalyzer and FortiManager. FortiManager / FortiAnalyzer Use the following configuration config system backup all-settings set status enable set protocol sftp set server “10.200.10.50” set user “fortibackup” set passwd “YourPassword” set directory “/home/fortibackup” set week_days sunday set time “23:00:00” set crptpasswd “CryptoKeyForYourBackup” end A […]

Check Point and GRUB-problems

This post serves more as a reminder to myself about Grub rather than providing new and exciting information. The /boot/grub/grub.conf file is either empty, or corrupted. Check Point FW boots into grub command prompt – Manual boot If all you can see is a grub command prompt you need to do the following to manually […]