PARAMETER
VALUE
Incoming Interface
internal
Source Address
local_lan
Outgoing Interface
forti2acs
Destination Address
ipsec_vpn_range
Schedule
always
Service
ALL
Action
ACCEPT
Firewall / Network Options
NAT
ON
Use Outgoing Interface Address
Enabled
Security Profiles
Antivirus, Web Filter, Application Control, SSL Inspection
All OFF
Traffic Shaping
Shared Shaper, Reverse Shaper, Per-IP Shaper
All OFF
Logging Options
Log Allowed Traffic
ON
Security Events
Enabled
Comments
<Comments>
Enable this policy
Enabled
Table 3.8 Firewall Policy 2 Configuration
8.
From the
Policy &
Objects
tab, click
Policy - IPv4
to create Firewall Policy 3 with the following settings, then
click
OK.
PARAMETER
VALUE
Incoming Interface
any
Source Address
all
Outgoing Interface
any
Destination Address
all
Action
DENY
Logging Options
Log Violation Traffic
OFF
Table 3.9 Firewall Policy 3 Configuration
Creating a tunnel on the console server
To create a tunnel on the console server:
1.
From the sidebar of the
Expert
tab, click
Network - IPSec(VPN)
, then click
Add
.
3 Accessing the Console System via the Web UI
31