img
  • Home
  • About
  • Category
  • Contact

Category Archives: DNS

DNS Doctoring on FortiGate

Sometimes, you have a scenario where your internal servers or devices are using external DNS servers (e.g. 8.8.8.8 or 4.2.2.2…

By Manny Fernandez

August 2, 2021

DNS over TLS (DoT) on the Fortigate

I recently wrote an article about the difference between DNS over HTTPS and DNS over TLS and the differences between…

By Manny Fernandez

November 19, 2019

DoH (DNS over HTTPS) vs DoT (DNS over TLS) in the Secure DNS Wars

It appears we are seeing a "Betamax vs VHS" battle in the aging DNS war.  Who will win? Will it…

By Manny Fernandez

November 19, 2019

Creating a VIP on Fortigate using a Dynamic IP address

When you have a dynamic IP address assigned by your carrier, you are normally only assigned one IP address to…

By Manny Fernandez

November 9, 2019

Adding DNS Suffix to your SSL VPN

Many times you set up an SSL VPN connection to the office and you try to connect to mail however, even…

By Manny Fernandez

September 10, 2019

Conditional DNS Forwarding with FortiGate and FortiProxy

Today I was working with a customer that was running FortiProxy in a Proof-of-Concept.  One of the requirements was to…

By Manny Fernandez

August 20, 2019

Fortigate DHCP and Microsoft Dynamic DNS

Remote branches that utilize Fortigate's DHCP do not update Microsoft DNS servers automagically.  Fortinet does not have a syncing feature…

By Manny Fernandez

May 22, 2019

Locking down your network DNS traffic using Fortinet

Here is a subject that is near-and-dear to me. I love collecting and analyzing DNS traffic. It is extrmemly informative…

By Manny Fernandez

January 24, 2019

Categories

  • 2FA (8)
  • AD VPN (3)
  • AI (1)
  • All (332)
  • Apple (29)
  • Authentication (18)
  • AWS (1)
  • Breaches (6)
  • BUG (1)
  • Certificate (13)
  • Checkpoint (2)
  • Cisco (20)
  • Compliance (4)
  • Content Filter (2)
  • Crypto (10)
  • DNS (8)
  • Endpoint (3)
  • FortiAIOps (1)
  • FortiAnalyzer (7)
  • FortiAP (5)
  • FortiAuthenticator (2)
  • FortiClient (9)
  • FortiDeceptor (4)
  • FortiExtender (3)
  • FortiGate (111)
  • FortiManager (5)
  • FortiNAC (5)
  • Fortinet (75)
  • FortiSASE (1)
  • FortiSwitch (11)
  • FortiVoice (2)
  • HA (5)
  • Ideas (1)
  • InfoSec-General (19)
  • IPS (3)
  • LAB (5)
  • LDAP (6)
  • Link (3)
  • Linux (28)
  • Logging (8)
  • macOS (5)
  • MFA (4)
  • Misc (20)
  • NAT (4)
  • Network (34)
  • Obervium (2)
  • OS X (36)
  • OSPF (2)
  • PacketCapture (10)
  • PaloAlto (3)
  • Password (6)
  • Personal (1)
  • Productivity (11)
  • Quick-Tip (3)
  • Routing (8)
  • Scripting (25)
  • SecOPS (3)
  • SIEM (1)
  • SNMP (2)
  • Spotlight (1)
  • SSL (17)
  • SSL Decryption (1)
  • Standard (3)
  • Training (2)
  • Troubleshooting (11)
  • Uncategorized (21)
  • Video (2)
  • VM (2)
  • Voice (3)
  • VPN (43)
  • WiFi (7)
  • Windows (9)
  • Wireshark (1)
  • Workflow (12)

Recent posts

  • At its core, IEEE 802.1X is a network layer... Full Story

  • In case you did not see the previous FortiNAC... Full Story

  • This is our 5th session where we are going... Full Story

  • Now that we have Wireshark installed and somewhat configured,... Full Story

  • The Philosophy of Packet Analysis Troubleshooting isn't about looking... Full Story

img

2021 © InfoSec Monkey