Writing

Production network and security engineering, organized by vendor and topic.

  1. How to Block Legacy Authentication in Microsoft Entra ID (2026 Guide)

    Step-by-step guide to blocking legacy authentication in Microsoft Entra ID using Conditional Access. Includes pre-flight reporting, break-glass setup, rollback, and real migration example.

    · 14 min read microsoft iam
  2. FortiGate IPsec Site-to-Site VPN to Cisco ASA on FortiOS 7.4

    Step-by-step guide to building an IKEv2 IPsec site-to-site VPN between a FortiGate 60F (FortiOS 7.4.4) and a Cisco ASA 5516-X (9.16(4)) using AES-256/SHA-256 and DH group 14. Includes CLI…

    · 12 min read cisco troubleshoot
  3. FortiGate SSL VPN Migration Checklist: What to Audit Before You Touch Anything (FortiOS 7.6)

    A senior engineer's pre-migration checklist for FortiGate SSL VPN to IPsec dialup or ZTNA. Covers firmware, endpoints, auth chains, network dependencies, and rollback planning for FortiOS 7.6.

    · 21 min read fortigate migrations
  4. How to Configure FortiGate VDOM (FortiOS 7.4): Complete Guide with Inter-VDOM Routing

    Step-by-step guide to configuring FortiGate VDOMs in FortiOS 7.4. Covers enabling multi-VDOM mode, creating VDOMs, assigning interfaces, inter-VDOM links, and routing. Real-world SMB use case…

    · 11 min read fortigate
  5. FortiGate Admin Password Reset on FortiOS 7.6 (60F Console Method)

    Locked out of your FortiGate 60F? This step-by-step guide covers the FortiGate admin password reset process via console cable using the maintainer account on FortiOS 7.6.

    · 6 min read fortigate troubleshoot