Azure Firewall

Azure firewall is a stateful firewall that is managed and cloud-based for our Azure resources. It has been build for high availability that is built in so no need for …

FortiGate Geo-Location

A diagnose command can be used to view more information about geography based addressing. The command displays country and address information for the countries that have been added to firewall …

FortiGate DNS FortiOS 5.6

DNS servers resolve domain names (For example www.alastair.co.uk) to IP address. The FortiGate uses DNS servers to resolve names to IP address. The settings for this is under Network > …

Disable SIP ALG

SIP ALG allows the firewall to dynamically open ports for audio traffic as well as the changing of IP address when NAT is used and the inspection of VoIP traffic.

Blackhole

An issue which I have had was when a site to site VPN dropped, traffic for the VPN would be routed out the default route and a session was created.