EasyManua.ls Logo

Fortinet FortiGate 400 User Manual

Fortinet FortiGate 400
308 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
Page #1 background imageLoading...
Page #1 background image
FortiGate 400
Installation and
Configuration Guide
4 / HA3
CONSOLE
1
2
Esc Enter
FortiGate User Manual Volume 1
Version 2.50 MR2
18 August 2003

Table of Contents

Question and Answer IconNeed help?

Do you have a question about the Fortinet FortiGate 400 and is the answer not in the manual?

Fortinet FortiGate 400 Specifications

General IconGeneral
BrandFortinet
ModelFortiGate 400
CategoryGateway
LanguageEnglish

Summary

FortiGate 400 Installation and Configuration Guide

Introduction

Antivirus protection

FortiGate Antivirus protection scans web, file transfer, and email content for viruses.

Getting started

Connecting to the web-based manager

Procedure to connect to the web-based manager for initial configuration.

Connecting to the command line interface (CLI)

Connecting to the FortiGate CLI as an alternative to the web-based manager for configuration.

NAT/Route mode installation

Preparing to configure NAT/Route mode

Gathering necessary information to customize NAT/Route mode settings before configuration.

Transparent mode installation

Preparing to configure Transparent mode

Gathering information to customize Transparent mode settings before configuration.

Changing to Transparent mode

Switching the FortiGate unit's operation mode from NAT/Route to Transparent.

High availability

Active-passive HA

Description of Active-Passive HA cluster, also known as hot standby HA.

Active-active HA

Explanation of Active-Active HA, providing load balancing between FortiGate units.

Managing the HA cluster

Managing the FortiGate cluster as a single unit via web-based manager or CLI.

System status

Changing the FortiGate firmware

Procedures to install new firmware or revert to a previous version.

Upgrade to a new firmware version

Web-based manager and CLI procedures to upgrade FortiOS firmware.

Revert to a previous firmware version

Reverting FortiGate to factory default config, deleting signatures, lists, and messages.

Manual virus definition updates

Manually updating antivirus definitions via the web-based manager.

Manual attack definition updates

Manually updating attack definitions via the web-based manager.

Backing up system settings

Downloading system settings to a text file on the management computer.

Restoring system settings to factory defaults

Restoring system settings to factory default values, resetting interface addresses.

Viewing CPU and memory status

Monitoring how close the FortiGate unit is to running at full capacity.

Network configuration

Configuring routing

Configuring FortiGate routing, adding static routes, and policy routing.

Adding a default route

Adding a default route for network traffic leaving the external interface.

Adding destination-based routes to the routing table

Adding routes to control traffic destination, configuring addresses and gateways.

Configuring the routing table

Arranging routes by specificity and managing gateway connection status.

Policy routing

Extending destination routing using policy routing based on source, protocol, or interface.

System configuration

Adding and editing administrator accounts

Creating and managing administrator accounts with permission levels and IP access controls.

Configuring SNMP

Configuring the FortiGate SNMP agent to report system information and send traps.

Firewall configuration

Default firewall configuration

Describes the default policy allowing port1 to port2 connections and blocking others.

Adding firewall policies

Adding policies to control traffic between interfaces, zones, and VLAN subinterfaces.

Configuring policy lists

Arranging policies in a list to ensure correct matching and execution order.

Virtual IPs

Adding static NAT virtual IPs

Mapping external IP addresses to destination networks using static NAT virtual IPs.

Adding port forwarding virtual IPs

Translating source IP and port to a hidden destination address and port.

Adding policies with virtual IPs

Adding policies that use virtual IPs to forward packets between networks.

IP/MAC binding

Configuring IP/MAC binding for packets going through the firewall

Filtering packets allowed by policy using IP/MAC binding to prevent spoofing.

Configuring IP/MAC binding for packets going to the firewall

Filtering packets connecting to the firewall using IP/MAC binding for administrator management.

Content profiles

Adding a content profile

Creating new content profiles customized to specific requirements.

Adding a content profile to a policy

Adding content profiles to policies to apply antivirus, web filtering, and email filtering.

Users and authentication

Adding user names and configuring authentication

Adding user names to the internal database and configuring authentication methods.

IPSec VPN

Network Intrusion Detection System (NIDS)

Antivirus protection

Web filtering

Email filter

Logging and reporting

Configuring traffic logging

Configuring alert email

Related product manuals