Web caching WAN optimization and web caching
FortiGate Version 4.0 Administration Guide
612 01-400-89802-20090424
http://docs.fortinet.com/ • Feedback
To configure web cache only WAN optimization
1 Go to Firewall > Policy and add a firewall policy that accepts traffic to be web cached.
2 Go to WAN Opt. & Cache > Rule and select Create New.
3 Select Web Cache Only.
4 Configure the web cache only rule.
More information about these settings:
5 Select OK to save the rule.
The rule is added to the bottom of the WAN optimization list.
6 If required, move the rule to a different position in the list.
See “Moving a rule to a different position in the rule list” on page 607.
Configuring client/server (active-passive) web caching
You add web caching support to the passive or server side of an active-passive WAN
optimization configuration. Web pages are cached on the server side FortiGate unit so you
should also Enable Byte Caching for optimum WAN optimization performance.
Figure 407: Example client/server (active-passive) web cache topology
Mode Web Cache Only
Source 172.20.120.0
Destination 192.168.10.0
Port 80
Transparent Mode Enable
Enable SSL Disable
Port Usually you would set the port to 80 to cache normal HTTP traffic. But you can
change the Port to a different number (for example 8080) or to a port number
range so that the FortiGate unit provides web caching for HTTP traffic using
other ports.
Enable SSL In this example SSL offloading is disabled. For an example of a reverse proxy
web cache configuration that also includes only one FortiGate unit and enables
SSL offloading, see “SSL offloading and reverse proxy web caching for an
internet web server” on page 627.
User Network
172.20.120.0
Web Server
Network
192.168.10.0
WAN
WAN Optimization
Client (active rule,
Protocol=HTTP)
WAN Optimization
Server (passive rule,
Enable Web Cache)
Web Cache
11010010101
IP address
172.10.10.1
IP address
172.20.20.1