Server mode deployment
Example 2: FortiMail unit in front of a firewall
FortiMail™ Secure Messaging Platform Version 4.0 Patch 1 Install Guide
Revision 2
149
•
•
Configuring the firewall policy
Configuring the firewall addresses
In order to create the outgoing firewall policy that governs traffic from the IP addresses of
local email users to the IP address of the FortiMail unit, you must first define the IP
addresses of the local email users and the FortiMail unit by creating firewall address
entries.
To add a firewall address for local email users
1
Go to
Firewall > Address > Address
.
2
Select
Create New
.
3
Complete the following:
4
Select
OK
.
To add a firewall address for the FortiMail unit
1
Go to
Firewall > Address > Addres
s
.
2
Select
Create New
.
3
Complete the following:
4
Select
OK
.
Configuring the service group
In order to create a firewall policy that governs only FortiMail-related traffic, you must first
a create service group that contains services that define protocols and port numbers used
in that traffic.
To add a service group for email user traffic to the FortiMail unit
1
Go to
Firewall > Service > Group
.
2
Select
Create New
.
3
In
Group Name
, enter a name to identify the service group entry, such as
local
_
email_users_services
.
4
In the
Available Services
area, select
HTTP
,
HTTPS
,
SMTP
,
POP3
, and
IMAP
, then
select the right arrow to move them to the
Members
area.
Note:
The following procedures use a FortiGate unit running FortiOS v3.0 MR7. If you are
using a different firewall appliance, consult the appliance’s documentation for completing
similar configurations.
Name
Enter a name to identify the firewall address entry, such as
local_email_users_address
.
Type
Select
Subnet/IP Range
.
Subnet /IP Range
Enter
172.16.1.0/24
.
Interface
Select
internal
.
Name
Enter a name to identify the firewall address entry, such as
FortiMail_address
.
Type
Select
Subnet/IP Range
.
Subnet /IP Range
Enter
10.10.10.5/32
.
Interface
Select
wan1
.
Summary of Contents for FortiMail-100
Page 1: ...FortiMail Secure Messaging Platform Version 4 0 Patch 1 Install Guide...
Page 173: ...www fortinet com...
Page 174: ...www fortinet com...