26
01-28008-0111-20050128
Fortinet Inc.
Planning the FortiGate configuration
Getting started
Figure 8: Example Transparent mode network configuration
You can connect up to four network segments to the FortiGate unit to control traffic
between these network segments.
• A 4-port switch for connecting the FortiGate internal interface to your internal
network segment,
• WAN1 can connect to the external firewall or router,
• DMZ and WAN2 can connect to other network segments,
Configuration options
Once you have selected Transparent or NAT/Route mode operation, you can
complete the configuration plan and begin to configure the FortiGate unit. Choose
among three different tools to configure the FortiGate unit.
Web-based manager and setup wizard
The FortiGate web-based manager is a full featured management tool. You can use
the web-based manager to configure most FortiGate settings.
The web-based manager Setup Wizard guides you through the initial configuration
steps. Use the Setup Wizard to configure the administrator password, the interface
addresses, the default gateway address, and the DNS server addresses. Optionally,
use the Setup Wizard to configure the internal server settings for NAT/Route mode.
To connect to the web-based manager you require:
• Ethernet connection between the FortiGate unit and a management computer.
• Internet Explorer version 6.0 or higher on the management computer.
CLI
The FortiGate CLI is a full-featured management tool. Use it to configure the
administrator password, the interface addresses, the default gateway address, and
the DNS server addresses. To connect to the CLI you require:
• Serial connection between the FortiGate unit and a management computer.
• A terminal emulation application on the management computer.
Note:
The modem interface is not available in Transparent mode.
FortiGate-60M Unit
in Transparent mode
Internet
10.10.10.1
Management IP
10.10.10.3
WAN1
Internal
10.10.10.2
Transparent mode policies
controlling traffic between
internal and external networks
204.23.1.5
(firewall, router)
Gateway to
public network
Internal network
INTERNAL
DMZ
4
3
2
1
LINK 100
LINK 100
LINK 100
LINK 100
LINK 100
LINK 100
LINK 100
WAN1
WAN2
PWR
STATUS
M
Содержание FortiGate 60M
Страница 12: ...12 01 28008 0111 20050128 Fortinet Inc Customer service and technical support Introduction ...
Страница 28: ...28 01 28008 0111 20050128 Fortinet Inc Next steps Getting started ...
Страница 56: ...56 01 28008 0111 20050128 Fortinet Inc Installing and configuring the cluster High availability installation ...