Preventing certificate warnings (default certificate)
In this recipe, you will prevent users from receiving a security certificate warning when your FortiGate performs full SSL inspection on incoming traffic. There are several methods for doing this,...
View ArticlePreventing certificate warnings (CA-signed certificate)
In this recipe, you will prevent users from receiving a security certificate warning when your FortiGate performs full SSL inspection on incoming traffic. There are several methods for doing this,...
View ArticleExempting Google from SSL inspection
In this recipe, you will exempt Google websites from deep SSL inspection. Exempting these websites allows the Google Chrome browser to access them without errors. You should use caution when exempting...
View ArticleSetting up WiFi with a FortiAP
In this recipe, you will set up a WiFi network with a FortiGate managing a FortiAP in Tunnel mode. You can configure a FortiAP unit in either Tunnel mode or Bridge mode. Tunnel mode is the default mode...
View ArticleUsing virtual IPs to configure port forwarding
This recipe demonstrates how to use Virtual IPs (VIPs) to configure port forwarding on a FortiGate unit. This configuration allows users on the Internet to connect to your server protected behind a...
View ArticleSetting up a WiFi Bridge with a FortiAP
In this example, you will set up a WiFi network with a FortiGate managing a FortiAP in Bridge mode. You can configure a FortiAP unit in either Tunnel or Bridge mode. When a FortiAP is in Bridge mode,...
View ArticleWebsite Maintenance – June 28, 2017
The Cookbook website will undergo scheduled maintenance today (June 28, 2017) at approximately 12PM EST. Due to this maintenance, the website may experience some downtime. Was this helpful? Yes No...
View ArticleIPsec VPN to Microsoft Azure
The following recipe demonstrates how to configure a site-to-site IPsec VPN tunnel to Microsoft Azure™. Using FortiOS 5.6, the example describes how to configure the tunnel between each site, avoiding...
View ArticleCaptive Portal bypass for Apple updates and Chromebook authentication
In this example, you will allow WiFi traffic to specific destinations from Apple devices or Google Chromebooks to bypass your Captive Portal. This allows those devices to receive updates or device...
View ArticleCertificate errors for blocked websites
Avoiding certificate errors when SSL inspection is applied to traffic is an in-demand topic. There are a number of methods that you can use to prevent these warnings: installing self-signed...
View ArticleSFP Transceivers
This recipe shows you have to install and remove SFP Transceivers from your device. SFP transceivers are static sensitive devices. Use an ESD wrist strap or similar grounding device when handling...
View ArticleBasic FortiAnalyzer Installation Guide
The following FortiAnalyzer devices uses the basic installation guide. 200D 300D 400C 1000C 1000D 2000B 3000D 3000E 3500F 3900E 4000B 4000D-BD The devices can be placed on any flat surface, or mounted...
View ArticleFortiAnalyzer Installation Guide with Cable Management Arm
The following FortiAnalyzer devices use this installation guide. 1000E 2000E 3000F 3700F They can be mounted in any standard 19 inch rack unit with the provided mounting hardware. A rack stabilizing...
View ArticleFortiAnalyzer 400E Installation Guide
The FortiAnalyzer-400E can be mounted in any standard 19 inch rack unit with the provided mounting hardware. The rack must be stabilized before sliding the unit out for servicing. Failure to stabilize...
View ArticleFeature Select confusion
In a product that has and uses a number of sophisticated technical features, one of the things that causes confusion on a regular basis is the fairly straight-forward Feature Select section The...
View ArticleEpisode 13: Technical Documentation
Send us your questions! We’re looking to do a Q&A episode of FortiCast and we need your help. If you have a question that needs an answer, email us at forticast@fortinet.com. Members of the...
View ArticleDecrypting ESP payloads using Wireshark
This recipe describes how to decrypt Encapsulated Security Payload (ESP) traffic on a FortiGate using the Security Association (SA) information from diag vpn tunnel list. This is useful for tracking...
View ArticleHigh Availability with two FortiGates
In this recipe, a backup FortiGate unit will be installed and connected to a previously installed primary FortiGate to provide redundancy if the primary FortiGate fails. Before you begin, the...
View ArticleEpisode 14: FortiManager 5.6
Send us your questions! We’re looking to do a Q&A episode of FortiCast and we need your help. If you have a question that needs an answer, email us at forticast@fortinet.com. Learn all about the...
View ArticleFortiAnalyzer: Log Data Migration from an Old to a New FortiAnalyzer
This example illustrates how to migrate logs from an old FortiAnalyzer to a new FortiAnalyzer. When migrating logs, the firmware versions must be the same. For example, if you are migrating logs from...
View Article