Installation & Initial Configuration
Configuring the operating mode
FortiDDoS v3.2 Installation Guide
28-320-183686-20130401
15
•
Figure 11:
Ports
2 Asymmetric Pair - External
: Connect LAN 2 and WAN 2 to external ports that
copy the traffic for the other link. The task of copying is entrusted to an external
source. Traffic from 2 uplinks is combined in both the FortiDDoS device using
copies available on the auxiliary ports.
3 Default Mode
: Connect LAN 2 to internal network and WAN 2 to the second
Internet link. This mode is useful in case you want to connect 1 FortiDDoS device in
an asymmetric network or a network having two Internet links. Traffic from 2 links is
combined internally in the device. However, at the egress port, the traffic
corresponds to the corresponding link. E.g. WAN 1 receives traffic from LAN 1 and
vice versa. Similarly LAN 2 receives traffic from WAN 2 and versa.
Configuring
prevention or
detection mode
for a set of VIDs
in a specific
direction
To set the Prevention/Detection Mode of a set of VIDs, click
Configure > Global >
Operating Mode
above.
In
Prevention/Detection Mode section
,
click the VIDs you want in Prevention Mode and
leave the VIDs unchecked if you want them in Detection Mode. You can choose the
modes in Inbound or Outbound or both directions.
Click
Save
.
Configuring
bypass mode
Bypass is relevant in case of appliance management path failure. It is assumed that the
data path failures are handled separately - in some cases using an external bypass
switch.
In case of Management Path failure, the user can choose one of the following:
1
Extrinsic Bypass
2
Intrinsic Bypass
3
No Bypass
Choose Extrinsic Bypass in case you want the external bypass switch to be enabled -
implies no prevention.
Choose Intrinsic Bypass in case you want the intrinsic bypass to be triggered - in case
you do not have external bypass switches and also implies no prevention.
Summary of Contents for FortiDDoS
Page 1: ...FortiDDoS v3 2 Installation Guide ...
Page 37: ......