ECMP Load Balancing Algorithms on Fortigates

June 10, 2024

Just a quick refresher on the various ECMP algorithms that Fortigates support (as of FortiOS 7.4):

  • Source IP - All traffic from a specific source IP is sent to the same interface.
  • Weighted - Interfaces with higher weights get more traffic.
  • Source-destination IP - All traffic sent from a specific source IP to a specific . . .

Read More

Inspection mode feature comparison on Fortigates

May 24, 2024

I came across this nifty doc describing the capabilities of flow-based vs proxy-based inspection modes for Fortigates. Very cool stuff.

Silvrback blog image

Obvious (but notable) takeaway: certain features only work with proxy-based inspection mode.

  • Video Filter
  • Inline CASB
  • ICAP
  • Web Application Firewall
  • Data . . .

Read More

Helpful Fortigate CLI Commands

May 22, 2024

Here's my list of helpful CLI commands for Fortinet stuff (all published in the Fortinet Doc Library. I'll keep adding to this over time.

FortiGuard

  • diagnose autoupdate versions - Lists the status of FortiGuard DBs and engines installed.

Routing

  • get router info routing-table all - . . .

Read More

OWASP Cheat Sheet Series

May 22, 2024

I stumbled across this amidst some prior training and thought I'd pass it along. OWASP has a fantastic collection of AppSec cheat sheets here.

A zip archive of all the cheat sheets is available for download here.

Read More

Fortinet FCP Study Resources

May 04, 2024

A new month, a new certification endeavor! This time, I'm starting to focus on the Fortinet Certified Professional track. What follows is a breakdown of the various study resources I'm using. Time permitting, I'll update it with additional resources I come across along the way.

Miscellaneous

Read More

Metasploit Search Parameters

May 02, 2024

Just a friendly reminder on the search options, keywords, and sorting choices for metasploit.

Usage: search [<options>] [<keywords>:<value>]

Prepending a value with '-' will exclude any matching results.
If no options or keywords are provided, cached results are displayed.

OPTIONS:
 -h . . .

Read More

Workaround for delayed response between Logitech Harmony and Roku

April 01, 2024

This was driving me insane for the better part of a day.

Fun fact, Logitech Harmony Hub defaults to talking to Roku devices via network-based remote commands. In theory, it's a really cool idea... until you realize the latency penalties of multiple hops:

Harmony Remote --> Harmony Hub --> Router --> Roku

. . .

Read More

Archive
   Subscribe by email and never miss a post.

This update link alerts you to new Silvrback admin blog posts. A green bubble beside the link indicates a new post. Click the link to the admin blog and the bubble disappears.

Got It!