
Cisco ISE TACACS+ Device Admin Guide — Done Safely
Complete Cisco ISE TACACS+ device admin guide — Device Admin persona, shell profiles, command sets, AD integration, and the safe AAA chain pattern.
Posts tagged: Network-Security

Complete Cisco ISE TACACS+ device admin guide — Device Admin persona, shell profiles, command sets, AD integration, and the safe AAA chain pattern.

How I locked myself out of a Cisco router with TACACS+, why IOS-XE does not fall through on STATUS_FAIL, and the safe AAA chain pattern that fixes it.

Deep dive into Mirai botnet anatomy: scanner logic, default credential brute-force, C2 architecture, the Dyn DDoS attack, detection with Zeek and iptables, and …

Technical breakdown of VLAN hopping via switch spoofing and double tagging, with Scapy exploit code, Cisco IOS hardening configs, and PCI DSS segmentation …

Integrate Cisco Meraki wired, wireless, and VPN with ISE — WPA2-Enterprise, Central Web Authentication, CoA, and step-by-step policy configuration.
Integrate FortiGate with Active Directory — create the LDAP service account, grab the Domain DN, and grant admin access by AD group membership.
Set up a FortiGate from scratch — VLAN plan for two ISPs, inside LAN, and management — plus port assignments to prep for social-media filtering and AV.
Configure FortiGate static routes for dual ISP failover, build firewall policies, and enable PAT — use priority and distance to set primary vs backup.
FortiGate web filter to block social media, plus read-only SSL handshake inspection and installing the FortiGate CA cert on Windows 10 to clear errors.

FortiGate configuration series index: interfaces, static routes, firewall policies, PAT for internet, web filtering, and read-only admins on FortiOS.