Articles by Yuri Slobodyanyuk





FortiToken Mobile tokens will not be transferable anymore

Fortinet changed the license/usage terms for FortiToken Mobile (FTM) and FTMs bought starting 4th of August 2025 will NOT be transferable anymore except for RMA cases. This affects both - Fortigate and FortiAuthenticator registered FTMs. This means if you want to move FTM tokens bought after that day to another …



FortiADC Quick Start Guide with examples

Table of Contents Introduction Initial Setup SLB Configuration Case 1: 2 HTTP port 80 real servers, Round-robin load balancing, HTTP Status healthcheck, Layer 7 Case 2: Same servers as above, but in addition make vpn.yurisk.com available only in the hours 08:00-20:30 and make Health Checks check …



Fortigate DNS Filter - All You Need to Know (almost)

Table of Contents Intro Local/Static Domain Filter Remote Category Fortiguard-based Categories Domains Feed IP addresses feed DNS Translation Applying the DNS Filter Profile on the Fortigate Interface Protecting Internal DNS Server Inspecting Encrypted DNS Traffic Debug and Verification Intro Few facts to remember: The DNS query/response traffic HAS …



Fortigate Web Filtering - All You Need to Know

Table of Contents Important facts to know Static URL Filter FortiGuard Category based Web filtering Category cache verification Action - Authenticate Allow User Override Usage Quota Custom/local Categories and Web rating Override Remote Category filter for external threat feed Search Engines Safe Search and Vimeo Rate by both IP Address …



Fortigate DLP file filtering and more examples

Table of Contents Important facts Block downloading PDF and MP4 files (FortiOS up to 7.2.4) File Filter (all versions of FortiOS, no lic needed) Fortigate up to 7.2.4 Fortigate 7.2.4 or newer Block uploading/downloading documents containing SSN or/and Credit Card numbers (7 …



Administrator users of Fortianalyzer, Fortimanager, and Fortigate authenticated via RADIUS

Table of Contents Intro Decide whether to use Wildcard user on FAZ/FMG/FGT or only specific users. RADIUS Configuration - Windows NPS Install Network Policy Role (NPS) Open NPS management console Integrate NPS with local Active Directory Create in NPS console RADIUS clients signifying each network device (FGT, FAZ, FMG …



mRemoteNG initial set up and usage

Table of Contents Introduciton Create and save new Connection Session Change appearance - increase font etc. Send the same command to multiple open SSH sesisons Introduciton Sometimes, you have to work with the tools you were given, and while I’m adept of SecureCRT for all things SSH, recently I had …



Delete default admin account from Fortianalyzer Fortigate Fortimanager

I already wrote how to delete the default admin account from the Fortigate https://yurisk.info/2021/06/09/rename-or-delete-default-fortigate-admin-administrator-account/, and today I will show you how to do the same in Fortianalyzer, Fortimanager, and Fortigate. Video: Your browser does not support the video tag. I also write cheat sheets …



Fortigate HA cluster FortiOS upgrade in pictures

I already wrote tips for upgrading your Fortigate HA cluster https://yurisk.info/2023/06/18/tips-on-upgrading-fortigate-in-ha-cluster/ , but didn’t include screenshots of the upgrade to illustrate what actually happens. Today I fix that - below are screenshots of the cluster upgrade I did, with description. It will be helpful to …



Tips for Network Engineers to make life easier

Not technical, but (hopefully) helpful list of tips learned the hard way by myself or from others before me. Color code your Terminal/CLI sessions. All terminals have this feature, I use SecureCRT and change background of the saved sessions according to the importance - backbone black, production - gray, lab - light …