Posts

Showing posts from January, 2016

Installing and Configuring Fortinet SSL VPN

Procedure for installing and configuring SSL VPN client. 1)Download the installer from Downloads section. 2)Open the installer and follow on screen instructions. (Install VPN only when shown options) 3)Open the VPN Client application and configure the parameters name, Ip address and port number. 4)Then click on close. 5)Enter the User id and Password as: Username: xxxxxxxx password: xxxxxxxxx and hit enter, Click Yes when prompted. ​

[Step by Step] Configuring SSL VPN in Fortinet 5.2.4 and higher

Image
SSL VPN IN FORTINET 5.2.4 or higher Watching is more Fun than reading... Click the link above!!                                                                                          To configure SSL VPN in Any fortinet firewalls having OS 5.2.4 or higher follow this procedure (it might work for lower versions also, i didn't tested :) ) Note: In Fortinet, by default we get SSL_VPN_TUNNEL_ADD for SSL VPN Users., In this tutorial i have configured the remote users subnet as SSL_USERS_Subnet so wherever i have used this group you use your SSL subnet group. 1. Go to User & Device: add a new local user. 2. Go to user groups and a new group for SSL users and add the users created in step 1 in this group. 3.Go to Policy & Objects: create a new object for your internal network (e.g.., 192.168.2.0/24) 4.Go to VPN > SSL > Portals edit the Full-access tunnel: Configure it as per below. 5. Go to settings under SSL:     configure the

Configuring LACP & PAGP

Image
Configuration of LACP & PAGP: LACP & PAGP: Link Aggregation Control Protocol and Port Aggregation Protocol both sounds same but the gap between these protocols is LACP is Open standard and can be used on any supported Product, where as PAGP is Cisco's proprietary and can be configured only in the Cisco devices. What are these these protocols? Generally we use trunk links to enable communication between two switches (for inter-vlan routing) when we use a single port for the trunk link (e.g., Gig port ) it gives us throughput of 1 Gbps, Making few more ports as trunk causes a loop and STP will block it from farming Configuring the LACP or PAGP gives us the capability to add multiple trunk links to a switch, without causing loops. So that providing more throughput. Port-Channel: When we have bundled multiple interfaces into a trunk group, A new logical interface is created automatically and its called as Port-Channel. When we configure this port channel inter

Cisco Access Point Cap to Sap / Sap to Cap conversion

Image
CONVERTING CISCO CAP TO SAP / SAP TO CAP (lwap - Ap / Ap - Lwap): You can watch the video too...!!! Conversion of the AP's using downgrade or upgrade takes a lot of time and most of the times the IOS loaded will lead to an error, So Instead of that process i am going to use ROMMON recovery, It's a simple procedure for IOS changing. It will help a Network engineer's work a lot easier. ROMMON recovery is a process of Deleting the existing flash, and re-inserting our desired IOS. Follow the below  procedure. Mandatory Pre requirements: A PC with TFTP server installed. (Turn off Antivirus, Firewall in PC) Cisco AP which is to be converted. Console cable  Procedure: 1) Login to the CLI go to "privilege mode" . (Enable mode) 2) Execute the below command:      show flash: Output for the above command will be like this In the above output following are the firmware images: ap3g2-k9w8-tar.153-3.JBB5.tar ap3g2-k9w8-mx.152-2.JB2  We need to delete th