• My Fortinet Accelerate 2026 and Ultimate Fabric Challenge 2026 experience

    This is a blog focused on technology, but, dear reader, if you would indulge me this time and read about what happened to me personally during Accelerate 2026, and the accompanying Ultimate Fabric Challenge, I would be grateful, because this topic is near and dear to my heart. What are these things? Accelerate is Fortinet’s…


  • Introducing the FortiGate filesystem hash checker

    The important thing up front, here is the GitHub link to the FortiGate filesystem hash checker: https://github.com/KevinGuenay/fortigate-fs-hash-checker As I was looking at my notes to enhance my FortiGate baseline, before publishing it, I came across a Fortinet technical tip article I saved months ago that talks about making periodic hash checks of FortiGate files as…


  • My FortiGate best practices baseline

    The important thing up front, here is the GitHub link to the FortiGate best practices baseline: https://github.com/KevinGuenay/fortigate-baseline Over the years, I have assembled my own baseline for FortiGates that I apply to basically every deployment. It contains sensible settings, some checks, best practices, and small things that not everyone knows about. I wanted it to…


  • FortiLink over layer 2 with a third-party switch

    Want to learn more about how to make FortiLink work over layer 2 with a third-party switch in the mix? Yes? Then let’s go! Disclaimer I want to stress that this type of configuration shouldn’t be your go-to. It’s something you do because you need it. Doing it “right” involves only FortiSwitches. I have also…


  • Going towards the deep end of a Fortinet ZTNA connection (TCP forwarding)

    What is ZTNA even? Zero Trust Network Access (ZTNA) is a fun term that, in 2025, is barely a buzzword and is ready to join the modern, established terms like SD-WAN, 2FA, and IoT. There isn’t a real consensus in the networking and security industry on what defines ZTNA, but if you ask most vendors,…