- 802.1x (1)
- api (1)
- authentication (3)
- automation (3)
- bgp (1)
- certificates (1)
- coding (2)
- event (1)
- fortianalyzer (2)
- fortiauthenticator (1)
- forticlient (7)
- fortigate (15)
- fortilink (1)
- fortimanager (1)
- fortinet (18)
- fortios (1)
- fortiswitch (2)
- fortiweb (1)
- ha (2)
- inspection (1)
- ipsec (1)
- migration (1)
- personal (1)
- quicktips (2)
- release (1)
- routing (1)
- saml (1)
- secops (1)
- security (3)
- ufc (1)
- video (1)
- virtualization (1)
- vpn (2)
- waf (1)
- web application firewall (1)
- ztna (3)
- ztp (1)
Category: Blog backend
-
About

Hey, I am Kevin Guenay, and I work for a global cybersecurity and IT solutions distributor as a senior solution engineer. In my work, I help our partners with their woes and questions related to cybersecurity solutions, support proof of concepts, and deliver expert-level training and workshops, among other things. I now deal almost exclusively with Fortinet products, but in my previous life at an MSP, I worked with HPE Aruba’s and Cisco’s portfolios as well.
I live something I like to call “service-oriented work”, which, to me, means making sure that everyone who works with me comes away feeling happy, because if the people I work with aren’t happy, I’m not. This means putting in some extra time and preparing for whatever I do, because things should get better.
I’m using this blog to post about whatever I think is interesting or helpful. During my journey in this industry, I’ve read so many things from so many people that helped me, and I want to give something back.
Overall, I’m just a guy from Austria who loves what he does, and I want other people to share my love.
The content of this blog represents my own views and opinions and does not reflect my employer’s stance on anything. I am my own person.
-
Blog
-
Quick tips: FortiClient FQDN-based split tunneling with IPsec, FortiGate Web Application Firewall URL access
Dear reader, I have another installment of the quick tips series. This time the topics are FQDN-based split tunneling for IPsec with FortiClient and how to use the URL access feature of a FortiGate Web Application Firewall (WAF) profile. Models and versions: FortiClient FQDN-based split tunneling with IPsec One of the nice things about SSL-VPN…
-
A real look at FortiGate FGCP HA BGP failover behaviour
A FortiGate Cluster Protocol (FGCP) HA deployment is nothing new in today’s world, and with more and more of these clusters functioning as BGP routers, especially with the proliferation of SD-WAN and ADVPN, having a high BGP service uptime is becoming critical. In order to achieve this, there are a few things to keep in…
-
Exploring the FortiClient EMS API
I am not a fan of the official FortiClient EMS API documentation that is available on the Fortinet Developer Network (FNDN). It is a bare-bones documentation that is sparse on explaining how to interact with the API, has very few examples, no responses, lacks a lot of API endpoints, and the endpoints that exist are…
-
FortiWeb installation on Proxmox and migration from VMware
Proxmox is gaining a lot of traction in recent years, not just because it’s a great product and there isn’t nearly enough content out there about it. To help the people after me, and because I did this for work anyway, I created a short video on how to install FortiWeb on Proxmox and migrate…
-
Connecting to an HA FortiClient EMS cluster without an external load balancer
Do you want redundancy? Don’t answer that question; the answer is “Yes!” This means you want your FortiClient EMS deployment to be redundant, and this gives you the problem of how to handle the FortiClients and FortiGate connection to your HA EMS nodes if you don’t have an external load balancer. Well, dear reader, I’ve…
-