- 802.1x (1)
- api (1)
- authentication (3)
- automation (3)
- bgp (2)
- certificates (1)
- coding (2)
- encryption (1)
- event (1)
- fortianalyzer (2)
- fortiauthenticator (1)
- forticlient (7)
- fortigate (17)
- fortilink (1)
- fortimanager (1)
- fortinet (20)
- fortios (1)
- fortiswitch (2)
- fortiweb (1)
- ha (3)
- inspection (1)
- ipsec (1)
- migration (1)
- personal (1)
- quicktips (3)
- release (1)
- routing (2)
- saml (1)
- secops (1)
- security (4)
- ufc (1)
- video (1)
- virtualization (1)
- vpn (2)
- waf (2)
- web application firewall (2)
- ztna (3)
- ztp (1)
Category: Blog backend
-
About

Hey, I am Kevin Guenay, and I work for a global cybersecurity and IT solutions distributor as a senior solution engineer. In my work, I help our partners with their woes and questions related to cybersecurity solutions, support proof of concepts, and deliver expert-level training and workshops, among other things. I now deal almost exclusively with Fortinet products, but in my previous life at an MSP, I worked with HPE Aruba’s and Cisco’s portfolios as well.
I live something I like to call “service-oriented work”, which, to me, means making sure that everyone who works with me comes away feeling happy, because if the people I work with aren’t happy, I’m not. This means putting in some extra time and preparing for whatever I do, because things should get better.
I’m using this blog to post about whatever I think is interesting or helpful. During my journey in this industry, I’ve read so many things from so many people that helped me, and I want to give something back.
Overall, I’m just a guy from Austria who loves what he does, and I want other people to share my love.
The content of this blog represents my own views and opinions and does not reflect my employer’s stance on anything. I am my own person.
-
Blog
-
My Fortinet Accelerate 2026 and Ultimate Fabric Challenge 2026 experience
This is a blog focused on technology, but, dear reader, if you would indulge me this time and read about what happened to me personally during Accelerate 2026, and the accompanying Ultimate Fabric Challenge, I would be grateful, because this topic is near and dear to my heart. What are these things? Accelerate is Fortinet’s…
-
Introducing the FortiGate filesystem hash checker
The important thing up front, here is the GitHub link to the FortiGate filesystem hash checker: https://github.com/KevinGuenay/fortigate-fs-hash-checker As I was looking at my notes to enhance my FortiGate baseline, before publishing it, I came across a Fortinet technical tip article I saved months ago that talks about making periodic hash checks of FortiGate files as…
-
My FortiGate best practices baseline
The important thing up front, here is the GitHub link to the FortiGate best practices baseline: https://github.com/KevinGuenay/fortigate-baseline Over the years, I have assembled my own baseline for FortiGates that I apply to basically every deployment. It contains sensible settings, some checks, best practices, and small things that not everyone knows about. I wanted it to…
-
FortiLink over layer 2 with a third-party switch
Want to learn more about how to make FortiLink work over layer 2 with a third-party switch in the mix? Yes? Then let’s go! Disclaimer I want to stress that this type of configuration shouldn’t be your go-to. It’s something you do because you need it. Doing it “right” involves only FortiSwitches. I have also…
-
Going towards the deep end of a Fortinet ZTNA connection (TCP forwarding)
What is ZTNA even? Zero Trust Network Access (ZTNA) is a fun term that, in 2025, is barely a buzzword and is ready to join the modern, established terms like SD-WAN, 2FA, and IoT. There isn’t a real consensus in the networking and security industry on what defines ZTNA, but if you ask most vendors,…
-