ECMP Load Balancing Algorithms on Fortigates
June 10, 2024
Just a quick refresher on the various ECMP algorithms that Fortigates support (as of FortiOS 7.4):
- Source IP - All traffic from a specific source IP is sent to the same interface.
- Weighted - Interfaces with higher weights get more traffic.
- Source-destination IP - All traffic sent from a specific source IP to a specific . . .
Inspection mode feature comparison on Fortigates
May 24, 2024
I came across this nifty doc describing the capabilities of flow-based vs proxy-based inspection modes for Fortigates. Very cool stuff.
Obvious (but notable) takeaway: certain features only work with proxy-based inspection mode.
- Video Filter
- Inline CASB
- ICAP
- Web Application Firewall
- Data . . .
Helpful Fortigate CLI Commands
May 22, 2024
Here's my list of helpful CLI commands for Fortinet stuff (all published in the Fortinet Doc Library. I'll keep adding to this over time.
FortiGuard
-
diagnose autoupdate versions
- Lists the status of FortiGuard DBs and engines installed.
Routing
get router info routing-table all
- . . .