Administration over modem
What’s new in FortiOS 4.0
FortiGate Version 4.0 Administration Guide
38
01-400-89802-20090424
Administration over modem
You can now use the following CLI command to configure a FortiGate modem interface so
that you can dial into the modem and administer the FortiGate unit.
config system dialinsvr
set status enable
set server-ip <ip_address>
set client-ip <ip_address>
set usrgrp "grp1"
set allowaccess ping https ssh http telnet
set modem-dev external
end
Auto-bypass and recovery for AMC bridge module
If you have installed one of the FortiGate-ASM-FX2 or FortiGate-ASM-CX4 AMC bridge
modules, you can use the CLI to configure how the bridge module recovers from switching
to bridge mode because of a failure with the FortiGate unit hardware or software process.
In this example, the FortiGate-ASM-CX4 module is installed in slot 1:
config system amc
set sw1 asm-cx4
set watchdog-recovery [enable | disable}
set watchdog-recovery-period <holddown_time>
end
The
watchdog-recovery-period
keyword determines the length of the hold-down
period during which the software watchdog monitors critical software processes before
concluding they have stabilized.
Rogue Wireless Access Point detection
FortiWifi-50B and FortiWifi-60B units can now use rogue access point detection to scan
for wireless access points.
For more information, see
“Rogue AP detection” on page 168
Configurable VDOM and global resource limits
FortiGate units have upper limits for resources such as firewall policies, protection profiles
and VPN tunnels. These limits vary by model. In previous releases of FortiOS, maximum
values for resources belonging to virtual domains (VDOMs) applied equally to each
VDOM. Maximums for system-wide (global) resources applied globally and the resources
were equally accessible to each VDOM.
In FortiOS 4.0, you can control resource allocation to each VDOM. This limits the impact
of each VDOM on other VDOMs due to resource contention and enables you to provide
tiered services to your customers. Also, you can set global resource limits to control the
impact of various features on system performance.
For more information, see
“Configuring global and VDOM resource limits” on page 116
Note:
AMC bridge mode is only supported in Transparent mode.
Summary of Contents for Gate 60D
Page 705: ...www fortinet com...
Page 706: ...www fortinet com...