Filtering (BGP) routes

Last time setup some IPsec S2S connections between multiple Fortigate firewalls and of course running BGP between them. In short: Hub site must know all routes from Spokes. But only transport 192.168.1.0/24 via BGP. Spoke A (IP 192.168.254.2)must know only the route to the Hub– Default route will remain on spoke location Spoke B (IP… Continue reading Filtering (BGP) routes

FortiNet CLI Cheat Sheet

The following table lists show / diag/ update/ config commands for FortiGate, which can be handy. Will update this list once in a while Command What does it do? config system arp-table Add static ARP entries config system interface Show all NIC’s config router prefix-list Add a prefix-listType show, to see current prefix-lists. config router… Continue reading FortiNet CLI Cheat Sheet

IPv4 Translation Table

IPv4 Translation Table Netmask Inverse /CIDR Usable Size 255.255.255.255 0.0.0.0 /32 1 1 Host 255.255.255.254 0.0.0.1 /31 0 2 Hosts 255.255.255.252 0.0.0.3 /30 2 4 Hosts 255.255.255.248 0.0.0.7 /29 6 8 Hosts 255.255.255.240 0.0.0.15 /28 14 16 Hosts 255.255.255.224 0.0.0.31 /27 30 32 Hosts 255.255.255.192 0.0.0.63 /26 62 64 Hosts 255.255.255.128 0.0.0.127 /25 126 128… Continue reading IPv4 Translation Table