From: RG on
So, I bought myself fortigate 50b from on ebay. Little did I know they have
no password. Would you know hardware resest it?

Thanks in advance
"Doug McIntyre" <merlyn(a)geeks.org> wrote in message
news:4b2177ca$0$47486$8046368a(a)newsreader.iphouse.net...
> alexd <troffasky(a)hotmail.com> writes:
>>I regularly see you recommend Juniper here. Could you suggest an
>>introductory guide to SSG that would make sense to someone who was
>>familiar
>>with IOS, ASA and SonicOS?
>
> Hmm, I've probably been pushing Fortigate more often lately, having
> deployed them alot more in the last few years than Juniper firewall
> setups (although I did plenty of those in the past as well, as well as
> PIX deployements). Plenty of Transparent mode setups on either of the
> Juniper or Fortigate setups, although not too many lately.
>
> The SSG's are all EOL'd, replaced the SRX's, which are vastly
> different boxes. The SSG was just another version of the Netscreen
> products.
> The SRX is when they converted everything over to JunOSse.
>
> I don't know of any high-level comparisons without going and getting a
> book for the Juniper/Netscreen ones. There are a few good ones on
> Netscreen Firewalls, but a couple I've read had some good high point
> overviews of Juniper vs. Cisco.
>
> BUT what I usually go for is going direct to the source documentation,
> which all 3 companies have fully online, open to the public.
>
> Like any computer documentation, each company has its own "style" and
> layout, and it does take a bit of thinking to get used to their style
> of doing things.
>
> Ie. if you did want to start with the older, EOL'd SSG boxes, the
> Fundementals of the Netscreen Concepts and Examples manual is where to
> start.
>
> http://www.juniper.net/techpubs/software/screenos/screenos6.3.0/630_ce_fundamentals.pdf
>
> Just go up one level to the directory URL for the rest of the
> documentation in
> that series, but the fundementals would be a good start.
>
> The SRX documentation is here.
> http://www.juniper.net/techpubs/software/junos-srx/junos-srx10.0/index.html
>
> There's not really a good starting point with the SRX. Having other
> JunOS experience helps alot. I have some M series routers that I
> manage, but not any SRXs...
>
> FortiNet's documentation starts here.
>
> http://docs.fortinet.com/fgt.html
>
> They probably have the most complete WebGUI interface, you can do 99%
> of what you need to totally within the GUI without going to the CLI.
> The Admin guide isn't quite as detailed as others, but should at least
> show you the concepts of what it is capable of. Deeper understanding
> of all only comes after having used them for sometime and deploying
> specific solutions.

From: Doug McIntyre on
"RG" <nobody(a)nowhere.com> writes:
>So, I bought myself fortigate 50b from on ebay. Little did I know they have
>no password. Would you know hardware resest it?

To password recovery a Fortinet, console in (uses same pinout as
Cisco, Juniper, Sun, etc).

Login as 'maintainer'. Password of 'bcpb' followed by the full serial
# of the box, matching case (ie. FGT in upper case, and any hardware
rev letter)

And then to make sure the config is totally cleared out

execute factoryreset

from the CLI.


From: RG on
Thanks for your time.

I am at a loss.

This is what I have done...

1. I connected dc9pin to my computer and rj45 end to fortigate
2. Through termina session I got user name prompt
3. I entered maintainer for user name.
4. I entered bcpbFGT50B3G07518259 for password
5. The response was it didn't like the credentials.

Perhaps you can see a problem with a password or username.


"Doug McIntyre" <merlyn(a)geeks.org> wrote in message
news:4b70eb60$0$33859$8046368a(a)newsreader.iphouse.net...
> "RG" <nobody(a)nowhere.com> writes:
>>So, I bought myself fortigate 50b from on ebay. Little did I know they
>>have
>>no password. Would you know hardware resest it?
>
> To password recovery a Fortinet, console in (uses same pinout as
> Cisco, Juniper, Sun, etc).
>
> Login as 'maintainer'. Password of 'bcpb' followed by the full serial
> # of the box, matching case (ie. FGT in upper case, and any hardware
> rev letter)
>
> And then to make sure the config is totally cleared out
>
> execute factoryreset
>
> from the CLI.
>
>

From: Doug McIntyre on
"RG" <nobody(a)nowhere.com> writes:
>Thanks for your time.

>I am at a loss.

>This is what I have done...

>1. I connected dc9pin to my computer and rj45 end to fortigate
>2. Through termina session I got user name prompt
>3. I entered maintainer for user name.
>4. I entered bcpbFGT50B3G07518259 for password
>5. The response was it didn't like the credentials.

>Perhaps you can see a problem with a password or username.


That should do it.

There is a timelimit, maybe make sure to have the password in the
paste buffer ready to send in?

Otherwise, make sure you don't typo it, sometimes delete/backspace
messes up things even if the characters get rubbed out on the screen.

From: RG on
k.. Now it worked for me. I don't know why I had to reboot the device while
in session and it worked for me. Thanks for the help.


"Doug McIntyre" <merlyn(a)geeks.org> wrote in message
news:4b7108b1$0$637$8046368a(a)newsreader.iphouse.net...
> "RG" <nobody(a)nowhere.com> writes:
>>Thanks for your time.
>
>>I am at a loss.
>
>>This is what I have done...
>
>>1. I connected dc9pin to my computer and rj45 end to fortigate
>>2. Through termina session I got user name prompt
>>3. I entered maintainer for user name.
>>4. I entered bcpbFGT50B3G07518259 for password
>>5. The response was it didn't like the credentials.
>
>>Perhaps you can see a problem with a password or username.
>
>
> That should do it.
>
> There is a timelimit, maybe make sure to have the password in the
> paste buffer ready to send in?
>
> Otherwise, make sure you don't typo it, sometimes delete/backspace
> messes up things even if the characters get rubbed out on the screen.
>