Firewall Policy Firewall policy examples
FortiGate Version 4.0 Administration Guide
01-400-89802-20090424 339
http://docs.fortinet.com/ • Feedback
Firewall policy examples
FortiGate units are capable of meeting various network requirements from home use to
SOHO, large enterprises and ISPs. The following two scenarios demonstrate practical
applications of firewall policies in the SOHO and large enterprise environments.
This section describes:
• Scenario one: SOHO-sized business
• Scenario two: enterprise-sized business
• Viewing the firewall policy list
• Configuring firewall policies
Scenario one: SOHO-sized business
Company A is a small software company performing development and providing customer
support. In addition to their internal network of 15 computers, they also have several
employees who work from home all or some of the time.
With their current network topography, all 15 of the internal computers are behind a router
and must go to an external source to access the IPS mail and web servers. All home-
based employees access the router through open/non-secured connections.
Destination Address Select an address or address range to limit traffic monitoring to
network traffic sent to the specified address or range. Select Multiple
to include multiple addresses or ranges.
Service Select a service to limit traffic monitoring to only the selected type.
DoS Sensor Select and specify a DoS sensor to have the FortiGate apply the
sensor to matching network traffic.