FortiOS 4.3.4 is out
Upgraded a test system to review the features/fixes, but it’s been getting some complaints from other admins that the IPSengine is consuming mass amounts of memory again. I’d recommend waiting for 4.3.5.
Upgraded a test system to review the features/fixes, but it’s been getting some complaints from other admins that the IPSengine is consuming mass amounts of memory again. I’d recommend waiting for 4.3.5.
Per an email blast
Today Fortinet announced the acquisition of Ottawa, Canada-based TalkSwitch®, the developer of owner-friendly® phone systems for remote offices and distributed enterprises. With tens of thousands of customers and a network of 1,500 resellers and distributors, TalkSwitch delivers owner friendly phone systems to companies, home-based businesses, institutions and franchises.
Looks like Fortinet is diversifying their product line by adding a more stable “voice” solution. Hmm, this appears as if they’re positioning to take on Cisco directly.
I started playing with the latest FortiAP220b device. Plugging in my trusty ultra-cool USB Bluetooth Serial adapter powered by the USB port on the FortiAP I noticed the following:
FAP22B3U1XXXX314 login: admin
Mar 1 12:12:03 login[606]: root login on `ttyS0′BusyBox v1.01 (2010.08.28-00:38+0000) Built-in shell (ash)
Enter ‘help’ for a list of built-in commands.FAP22B3U1XXXX314 # help
Built-in commands:
——————-
. : alias bg break cd chdir continue eval exec exit export false
fg hash help jobs kill let local pwd read readonly return set
shift times trap true type ulimit umask unalias unset waitFAP22B3U1XXXX314 # .
Ok, so we know it’s running an embedded type of Linux called Busy-Box. At this point the AP is NOT administrated by the Fortigate. Not sure how much I can do with it until I tick manage – more to follow…
I have worked with SonicWall’s in the past, one feature I am spoiled using is something Cisco calls an Extended Ping – per Cisco’s site
The Extended ping Command
When a normal ping command is sent from a router, the source address of the ping is the IP address of the interface that the packet uses to exit the router. If an extended ping command is used, the source IP address can be changed to any IP address on the router. The extended ping is used to perform a more advanced check of host reach-ability and network connectivity.
It appears SonicWall does not have a feature like this in their OS? I have confirmed this with their support while trying to diagnose a IPSEC tunnel remotely. How is that possible? Let’s hope they incorporate this soon…
Refer to my other articles for Cisco & Fortinet’s usage of the command..
Fortinet quietly released 4.0 MR3 Build 0441 yesterday, March 19th. Many fixes not addressed including:
The upside, 2 1/2 pages of enhancements – more to come while I digest this release notes…
–Update
Some enhancements -
Per the announcement -
This high-power AP is supported in FortiOS 4.3 and allows wireless signals to be extended to outdoor Patios, warehouse, resorts and campuses. The range of the AP is about 1500′ to 2000′ radial and can cover a ½ square mile circular area
Fortinet has recently come out with their version of Access Points. In our next installment, I will explain how to configure this ingenious product from Fortinet. I really enjoy working with this hardware. It allows multiple SSID’s with-in one AP but logically separating them without doing any VLANing on the switch.