DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET l l l l l l DO NOT REPRINT © FORTINET admin password DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET 10.0.1.1-10.0.1.250 DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET admin password Enter get system status More Enter q get ? ? get get system status DO NOT REPRINT © FORTINET Ctrl a Ctrl e Ctrl b Ctrl f Ctrl d Ctrl l Ctrl c Ctrl p execute ? execute exe Tab Tab Tab execute execute exe show system interface port3 show full-configuration system interface port3 DO NOT REPRINT © FORTINET show full-configuration show DO NOT REPRINT © FORTINET Administrator password 10.0.1.254 admin password DO NOT REPRINT © FORTINET local-initial.conf admin password DO NOT REPRINT © FORTINET undo 10.0.1.254 admin password fortinet DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET fortinet Desktop\Resources\FortiGate-Security\Introduction\local-initial.conf DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET admin Security_Admin_Profile password DO NOT REPRINT © FORTINET < > ( ) # " DO NOT REPRINT © FORTINET Security fortinet admin password 10.200.3.0/24 10.200.3.0/24 Security fortinet Administrator password 10.200.1.1 Security fortinet DO NOT REPRINT © FORTINET admin password 10.0.1.0/24 config system admin edit Security set trusthost2 10.0.1.0/24 end 10.0.1.254 fortinet Security DO NOT REPRINT © FORTINET l l l l l l l l admin password DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET admin password DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET l l l DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET 10.200.1.254/32 l l l 10.0.1.0/24 10.200.1.254 l admin password DO NOT REPRINT © FORTINET l l ping 10.200.1.254 DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET admin password DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET http://10.200.1.200 admin get system session list password DO NOT REPRINT © FORTINET Local-FortiGate# get system session list PROTO EXPIRE SOURCE SOURCE-NAT DESTINATION DESTINATION-NAT tcp 3594 10.200.3.1:49478 - 10.200.1.200:80 10.0.1.10:80 10.200.1.200 10.0.1.10 get system session list diagnose sys session clear diagnose sys session clear l l l admin get system session list password DO NOT REPRINT © FORTINET 10.200.1.200 10.200.1.1 DO NOT REPRINT © FORTINET admin password DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET admin password 10.0.1.10 diagnose sys session filter clear diagnose sys session filter src 10.0.1.10 diagnose sys session clear 10.0.1.10 diagnose sys session clear 10.0.1.10 session clear l l l get system session list 10.200.1.100 DO NOT REPRINT © FORTINET l l l l admin password DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET admin/password l l l admin password DO NOT REPRINT © FORTINET l l 20 5 DO NOT REPRINT © FORTINET 5 DO NOT REPRINT © FORTINET l l l l Backup_Access DO NOT REPRINT © FORTINET admin get router info routing-table all get router info routing-table database password DO NOT REPRINT © FORTINET > DO NOT REPRINT © FORTINET l l DO NOT REPRINT © FORTINET l l DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET admin/password l 10 l admin 10 password DO NOT REPRINT © FORTINET admin config system settings set v4-ecmp-mode source-dest-ip-based end password DO NOT REPRINT © FORTINET l l l l l l DO NOT REPRINT © FORTINET 1 get router info routing-table all DO NOT REPRINT © FORTINET diagnose sniffer packet any 'not host 172.16.100.1 and not host 172.16.100.3 and tcp [13]&2==2 and port 80' 4 'tcp[13]&2==2' l l l Ctrl C DO NOT REPRINT © FORTINET port1 port2 DO NOT REPRINT © FORTINET l l admin password DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET admin password DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET 10.0.1.254 DO NOT REPRINT © FORTINET admin password diagnose test authserver ldap <LDAP server name> <LDAP user name> <password> l <LDAP server name> l <LDAP user name> l <password> External_Server aduser1 Training! DO NOT REPRINT © FORTINET aduser1 elite-hackers.com aduser1 Training! admin DO NOT REPRINT © FORTINET config user setting DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET admin password DO NOT REPRINT © FORTINET 10.0.1.254 DO NOT REPRINT © FORTINET Training DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET admin password diagnose test authserver radius <RADIUS server name> mschap2 <RADIUS user name> <password> l <RADIUS server name> l <RADIUS user name> l <password> RADIUS_Server radius1 Training! radius1 elite-hackers.com radius1 Training! DO NOT REPRINT © FORTINET admin config user setting DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET l l l admin password DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET admin password DO NOT REPRINT © FORTINET cd Desktop/FSSO/ python2 fssoreplay.py -l 8000 -f sample.log DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET l l admin diagnose debug enable diagnose debug authd fsso server-status password DO NOT REPRINT © FORTINET Server Name Connection Status Version Address ----------- ----------------- ------- ------TrainingDomain connected FSAE server 1.1 10.0.1.10 admin password diagnose debug enable diagnose debug application authd 8256 Ctrl C python2 fssoreplay.py -l 8000 -f sample.log diagnose [_process_logon: 1079]: ADUSER1(10.0.1.10, 0) logged on from TrainingDomain. [_process_logon:1122di]: ADUSER1 (10.0.1.10, 0) from TrainingDomain exists fsae_io_ctx_process_msg[TrainingDomain]: received heartbeat 100004 fsae_io_ctx_process_msg[TrainingDomain]: received heartbeat 100005 diagnose debug reset diagnose debug authd fsso list ----FSSO logons---IP:10.0.1.10 User: ADUSER1 Groups: TRAINING/AD-USERS Workstation C7280677811.TRAININGAD.TRAINING.LAB MemberOf: Training TRAININGAD/AD-USERS Total number of logons listed: 1, filtered: 0 ----end of FSSO logons---- admin password DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET l l admin password DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET admin Custom_Full_Inspection password DO NOT REPRINT © FORTINET l l DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET without Administrator https://www.goto.com goto.com not password DO NOT REPRINT © FORTINET 10.0.1.254 admin password DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET Fortinet_CA_SSL.cer DO NOT REPRINT © FORTINET https://www.goto.com DO NOT REPRINT © FORTINET admin Ctrl C password DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET config vpn certificate setting set ocsp-option certificate set ocsp-status enable set strict-ocsp-check enable end Administrator https://revoked.badssl.com/ https://expired.badssl.com/ password DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET admin l https://revoked.badssl.com/ l https://expired.badssl.com/ password DO NOT REPRINT © FORTINET l l l l admin password DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET admin password gui-proxyinspection admin config system settings set gui-proxy-inspection enable end password DO NOT REPRINT © FORTINET admin password DO NOT REPRINT © FORTINET eicar.com DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET admin password DO NOT REPRINT © FORTINET l l l X5O!P%@AP[4\PZX54(P^)7CC)7}$EICAR-STANDARD-ANTIVIRUS-TEST-FILE!$H+H* http://10.200.1.254/test_av.html DO NOT REPRINT © FORTINET http://10.200.1.254/test_av.html DO NOT REPRINT © FORTINET eicar.com.txt eicar.com.txt DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET eicar.com l l l eicar.com https://10.200.1.254/test_av.html eicar.com https://10.200.1.254/test_av.html eicar.com DO NOT REPRINT © FORTINET admin password diagnose debug application update -1 diagnose debug enable execute update-av DO NOT REPRINT © FORTINET diagnose debug disable diagnose debug application update 0 DO NOT REPRINT © FORTINET l l l l l admin password DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET admin password DO NOT REPRINT © FORTINET https://www.fortiguard.com/webfilter www.facebook.com DO NOT REPRINT © FORTINET l www.skype.com l www.ask.com l www.bing.com DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET admin password get webfilter status get webfilter status diagnose debug rating 10.0.1.241 www.facebook.com DO NOT REPRINT © FORTINET www.skype.com DO NOT REPRINT © FORTINET www.bing.com www.bing.com DO NOT REPRINT © FORTINET www.bing.com DO NOT REPRINT © FORTINET www.bing.com www.bing.com DO NOT REPRINT © FORTINET www.bing.com DO NOT REPRINT © FORTINET www.bing.com DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET admin password DO NOT REPRINT © FORTINET www.bing.com DO NOT REPRINT © FORTINET www.bing.com DO NOT REPRINT © FORTINET www.bing.com www.bing.com http://www.bing.com DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET l l l admin password DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET admin WEBSERVER medium password DO NOT REPRINT © FORTINET medium high high critical critical Server Server Apache DO NOT REPRINT © FORTINET l 10.0.1.10 10.200.1.200 VIP-WEB-SERVER l Web_Server_Access_IPS DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET student nikto.pl -host 10.200.1.200 password DO NOT REPRINT © FORTINET l l Threat Encyclopedia Threat Enclyclopedia admin diagnose test application ipsmonitor 1 password DO NOT REPRINT © FORTINET diagnose test application ipsmonitor 5 diagnose test application ipsmonitor 1 enable diagnose test application ipsmonitor 99 diagnose test application ipsmonitor 1 disable DO NOT REPRINT © FORTINET admin password DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET l l DO NOT REPRINT © FORTINET http://abc.go.com http://abc.go.com DO NOT REPRINT © FORTINET l l abc.com Enter DO NOT REPRINT © FORTINET http://abc.go.com DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET l l l l admin password DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET 10.0.1.0/24 config system settings set gui-sslvpn enable end admin password DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET 10.0.1.0/24 DO NOT REPRINT © FORTINET Administrator password DO NOT REPRINT © FORTINET student fortinet http://10.0.1.10 10.0.1.0/24 DO NOT REPRINT © FORTINET 10.200.3.1 admin l l fortissl password DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET l l admin password DO NOT REPRINT © FORTINET admin password DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET admin password DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET l 10.0.2.0/24 l 0.0.0.0/0 0.0.0.0/0 l 10.0.2.0/24 DO NOT REPRINT © FORTINET admin password DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET 10.0.2.0/24 10.0.1.0/24 ping 10.0.1.10 10.0.1.10 10.0.2.10 DO NOT REPRINT © FORTINET Ctrl C DO NOT REPRINT © FORTINET admin password DO NOT REPRINT © FORTINET admin password DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET Remote_in DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET ping 10.0.1.10 10.0.1.10 Ctrl C 10.0.2.10 DO NOT REPRINT © FORTINET l l l l l admin password DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET admin/password admin password DO NOT REPRINT © FORTINET admin/password underlay l l l 10.200.1.254 l 10.200.2.254 underlay DO NOT REPRINT © FORTINET 4.2.2.2 DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET get router info kernel config system global set gui-app-detection-sdwan enable end DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET admin get router info routing-table all password DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET Administrator password cd Desktop sh traffic-generation.sh Script was successfully completed admin password DO NOT REPRINT © FORTINET The traffic was successfully generated DO NOT REPRINT © FORTINET l l DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET l l DO NOT REPRINT © FORTINET admin admin password password DO NOT REPRINT © FORTINET admin password DO NOT REPRINT © FORTINET http://10.0.1.210 admin password DO NOT REPRINT © FORTINET FAZ-SF.dat DO NOT REPRINT © FORTINET admin password DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET admin password DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET admin password 10.0.1.254 10.0.1.200 443 DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET 10.10.10.1 admin 10.10.10.1 password DO NOT REPRINT © FORTINET 10.10.10.3 admin password DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET l l l l DO NOT REPRINT © FORTINET must first admin password DO NOT REPRINT © FORTINET admin password DO NOT REPRINT © FORTINET diagnose admin password DO NOT REPRINT © FORTINET admin config system ha set mode a-p set group-name Training set group-id 5 set password Fortinet set hbdev port2 0 set session-pickup enable set override disable set priority 100 end password DO NOT REPRINT © FORTINET secondary succeeded to sync external files with primary secondary starts to sync with primary logout all admin users admin diagnose sys ha checksum show diagnose sys ha checksum show diagnose sys ha checksum cluster get system status Current HA mode Serial-Number a-p primary a-p secondary password DO NOT REPRINT © FORTINET get system ha status Primary selected using DO NOT REPRINT © FORTINET l 4.2.2.2 l ping 4.2.2.2 execute reboot Y DO NOT REPRINT © FORTINET diagnose sys ha reset-uptime secondary get system status diagnose debug enable diagnose debug application hatalk 0 diagnose debug application hatalk 255 diagnose debug application hatalk 0 execute reboot Y DO NOT REPRINT © FORTINET diagnose debug application hatalk 0 Enter DO NOT REPRINT © FORTINET not admin execute ha manage <id> admin ? <id> password password DO NOT REPRINT © FORTINET get system status Current HA mode a-p secondary exit 10.0.1.254 admin password DO NOT REPRINT © FORTINET admin password config system interface edit port7 set ip 10.0.1.253/24 set allowaccess ping ssh snmp http https end 10.0.1.253 admin password DO NOT REPRINT © FORTINET l show system ha 10.0.1.252/24 l allowaccess admin password show system ha ha-mgmt-status config ha-mgmt-interfaces show system interface port7 config system interface edit port7 set ip 10.0.1.252/24 set allowaccess ping ssh snmp http https next end 10.0.1.252 admin password DO NOT REPRINT © FORTINET 10.0.1.254 admin password admin password 10.0.1.251 DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET l l l l admin password DO NOT REPRINT © FORTINET DO NOT REPRINT © FORTINET admin password DO NOT REPRINT © FORTINET get system status get system performance status get hardware nic port1 get system arp diagnose sys top 1 Shift P Shift M Q DO NOT REPRINT © FORTINET 10.200.1.254 ping 10.200.1.254 admin password 10.200.1.254 diagnose sniffer packet any "icmp and host 10.200.1.254" 4 interfaces=[any] filters=[icmp and host 10.200.1.254] 5.439019 port3 in 10.0.1.10 -> 10.200.1.254: icmp: echo request 10.442347 port3 in 10.0.1.10 -> 10.200.1.254: icmp: echo request DO NOT REPRINT © FORTINET 15.444343 port3 in 10.0.1.10 -> 10.200.1.254: icmp: echo request 20.545397 port3 in 10.0.1.10 -> 10.200.1.254: icmp: echo request Ctrl C admin 3 password DO NOT REPRINT © FORTINET 10.0.1.10 10.200.1.254 port3 vd-root:0 received a packet(proto=1, 10.0.1.10:6->10.200.1.254:2048) tun_id=0.0.0.0 from port3. type=8, code=0, id=6, seq=34033. allocate a new session-0000fc20, tun_id=0.0.0.0 10.200.1.254 port1 find a route: flag=00000000 gw-0.0.0.0 via port1 Denied by forward policy check (policy 0) Denied by forward policy check policy 0 0 Ctrl C diagnose sys session filter clear diagnose sys session filter proto 1 DO NOT REPRINT © FORTINET diagnose sys session clear 3 ping 10.200.1.254 Allowed by Policy-1: SNAT SNAT 10.0.1.10->10.200.1.1:60424 DO NOT REPRINT © FORTINET vd-root:0 received a packet(proto=1, 10.200.1.254:60424->10.200.1.1:0) tun_id=0.0.0.0 from port1. type=0, code=0, id=60424, seq=1. Find an existing session, id-00010feb, reply direction DNAT 10.200.1.1:0->10.0.1.10:7 find a route: flag=00000000 gw-0.0.0.0 via port3 DO NOT REPRINT © FORTINET
Puede agregar este documento a su colección de estudio (s)
Iniciar sesión Disponible sólo para usuarios autorizadosPuede agregar este documento a su lista guardada
Iniciar sesión Disponible sólo para usuarios autorizados(Para quejas, use otra forma )