![Fortinet FortiWAN Скачать руководство пользователя страница 85](http://html1.mh-extra.com/html/fortinet/fortiwan/fortiwan_handbook_2322088085.webp)
Configuring Network Interface (Network Setting)
How to set up your FortiWAN
10. Apply the bridge mode configuration.
11. If the configuration above has been correctly established, in the [System] →[Summary] page, the status color on
the WAN Link State for WAN Link #1 will turn green.
LAN configuration:
1. Go to [System] → [Network Setting] → [LAN Private Subnet].
2. Enter [192.168.1.254] in the IP(s) on Localhost field.
3. Enter [255.255.255.0] in the Netmask field.
4. Select [Port2] in the LAN Port field.
5. Check NAT Subnet for VS.
6. Configuration complete.
Virtual Server Configuration:
Assume an SMTP server with IP 192.168.1.1 provides SMTP services to the outside via the virtual server. FortiWAN
will perform NAT on this machine so that the outside clients can get SMTP services via FortiWAN’s public IP on WAN1.
The settings for this are in [Service] → [Virtual Server].
1. Click [+] to create a new rule.
2. Check [E] to enable this rule.
3. Select [All-Time] in the "When" field.
4. Enter [211.100.3.35] in the WAN IP field.
5. Select [SMTP(25)] in the Service field.
6. Select [Round-Robin] in the Algorithm field.
7. Click [+] to create a new server in Server Pool.
8. Enter [192.168.1.1] in the Server IP field.
9. Select [SMTP(25)] in the Service field.
10. Enter [1] in the Weight field.
11. Selection of the L field is optional. (If an Administrator wishes to log Virtual Server activities, please select "L").
12. Configuration complete.
Administrators can set up different types of services inside the LAN and use the Virtual Server to make these services
available to public once the configurations are completed.
WAN Type: Routing Mode Example 1
This is a typical example where ISP provides a network segment (a class C segment for example) to the user. Under
such a condition, FortiWAN use one or more IP addresses, while the rest of the public IP addresses (from the assigned
segment) will be under DMZ.
Servers with public IP addresses can be deployed in two places in the network (as illustrated in the figure below). It can
be deployed either between the ATU-R and FortiWAN, i.e., behind the ATU-R but in front FortiWAN or inside the
FortiWAN DMZ segment.
FortiWAN Handbook
Fortinet Technologies Inc.
85
Содержание FortiWAN
Страница 1: ...FortiWAN Handbook VERSION 4 2 1...