Inhaltszusammenfassung zur Seite Nr. 1
FortiGate 800/800F Installation Guide
FortiGate-800
INTERNAL EXTERNAL DMZ HA 12 3 4 CONSOLE USB
Esc Enter
PWR
8
FortiGate-800F
PWR
INTERNAL EXTERNAL DMZ HA 1 2 3 4 CONSOLE USB
Esc Enter
800F
Version 2.80 MR6
26 October 2004
01-28006-0024-20041026
Inhaltszusammenfassung zur Seite Nr. 2
© Copyright 2004 Fortinet Inc. All rights reserved. No part of this publication including text, examples, diagrams or illustrations may be reproduced, transmitted, or translated in any form or by any means, electronic, mechanical, manual, optical or otherwise, for any purpose, without prior written permission of Fortinet Inc. FortiGate-800/800F Installation Guide Version 2.80 MR6 26 October 2004 01-28006-0024-20041026 Trademarks Products mentioned in this document are trademarks or registered
Inhaltszusammenfassung zur Seite Nr. 3
Contents Table of Contents Introduction ............................................................................................................ 5 Secure installation, configuration, and management.......................................................... 5 Web-based manager ...................................................................................................... 6 Command line interface ............................................................................................
Inhaltszusammenfassung zur Seite Nr. 4
Contents Using the setup wizard...................................................................................................... 34 Starting the setup wizard .............................................................................................. 35 Connecting the FortiGate unit to the network(s) ............................................................... 36 Configuring the networks ..................................................................................................
Inhaltszusammenfassung zur Seite Nr. 5
FortiGate-800/800F Installation Guide Version 2.80 MR6 Introduction FortiGate Antivirus Firewalls improve network security, reduce network misuse and abuse, and help you use communications resources more efficiently without compromising the performance of your network. FortiGate Antivirus Firewalls are ICSA-certified for firewall, IPSec, and antivirus services. The FortiGate Antivirus Firewall is a dedicated easily managed security device that delivers a full suite of capabilities that inclu
Inhaltszusammenfassung zur Seite Nr. 6
Web-based manager Introduction The CLI or the web-based manager can then be used to complete configuration and to perform maintenance and administration. Web-based manager Using HTTP or a secure HTTPS connection from any computer running Internet Explorer, you can configure and manage the FortiGate unit. The web-based manager supports multiple languages. You can configure the FortiGate unit for HTTP and HTTPS administration from any FortiGate interface. You can use the web-based manager to c
Inhaltszusammenfassung zur Seite Nr. 7
Introduction Setup wizard Setup wizard The FortiGate setup wizard provides an easy way to configure the basic initial settings for the FortiGate unit. The wizard walks through the configuration of a new administrator password, FortiGate interfaces, DHCP server settings, internal servers (web, FTP, etc.), and basic antivirus settings. Document conventions This guide uses the following conventions to describe command syntax. • Angle brackets < > to indicate variables. For example: execute resto
Inhaltszusammenfassung zur Seite Nr. 8
Setup wizard Introduction set allowaccess {ping https ssh snmp http telnet} You can enter any of the following: set allowaccess ping set allowaccess ping https ssh set allowaccess https ping ssh set allowaccess snmp In most cases to make changes to lists that contain options separated by spaces, you need to retype the whole list including all the options you want to apply and excluding all the options you want to remove. FortiGate documentation Information about FortiGate products is available
Inhaltszusammenfassung zur Seite Nr. 9
Introduction FortiManager documentation Related documentation Additional information about Fortinet products is available from the following related documentation. FortiManager documentation • FortiManager QuickStart Guide Explains how to install the FortiManager Console, set up the FortiManager Server, and configure basic settings. • FortiManager System Administration Guide Describes how to use the FortiManager System to manage FortiGate devices. • FortiManager System online help Provides a s
Inhaltszusammenfassung zur Seite Nr. 10
FortiLog documentation Introduction FortiLog documentation • FortiLog Administration Guide Describes how to install and configure a FortiLog unit to collect FortiGate and FortiMail log files. It also describes how to view FortiGate and FortiMail log files, generate and view log reports, and use the FortiLog unit as a NAS server. • FortiLog online help Provides a searchable version of the Administration Guide in HTML format. You can access online help from the web-based manager as you work. Th
Inhaltszusammenfassung zur Seite Nr. 11
Introduction Comments on Fortinet technical documentation Customer service and technical support For antivirus and attack definition updates, firmware updates, updated product documentation, technical support information, and other resources, please visit the Fortinet technical support web site at http://support.fortinet.com. You can also register FortiGate Antivirus Firewalls from http://support.fortinet.com and change your registration information at any time. Fortinet email support is avai
Inhaltszusammenfassung zur Seite Nr. 12
Comments on Fortinet technical documentation Introduction 12 01-28006-0024-20041026 Fortinet Inc.
Inhaltszusammenfassung zur Seite Nr. 13
FortiGate-800/800F Installation Guide Version 2.80 MR6 Getting started This section describes unpacking, setting up, and powering on a FortiGate Antivirus Firewall unit. This section includes: • Package contents • Mounting • Turning the FortiGate unit power on and off • Connecting to the web-based manager • Connecting to the command line interface (CLI) • Factory default FortiGate configuration settings • Planning the FortiGate configuration • Next steps FortiGate-800/800F Installation Guide 01
Inhaltszusammenfassung zur Seite Nr. 14
Getting started Package contents The FortiGate-800 and FortiGate-800F package contains the following items: • FortiGate-800 or FortiGate-800F Antivirus Firewall • one orange crossover ethernet cable (Fortinet part number CC300248) • one grey regular ethernet cable (Fortinet part number CC300249) • one RJ-45 to DB-9 serial cable • SFP transceivers (FortiGate-800F only) • one power cable • two 19-inch rack mount brackets • FortiGate-800 or FortiGate-800F QuickStart Guide • CD containing Fortinet u
Inhaltszusammenfassung zur Seite Nr. 15
Getting started Mounting The FortiGate-800/800F unit can be mounted in a standard 19-inch rack. It requires 1 U of vertical space in the rack. The FortiGate-800/800F unit can also be installed as a free-standing appliance on any stable surface. Dimensions • 16.75 x 12 x 1.75 in. (42.7 x 30.5 x 4.5 cm) Weight • 10 lb. (4.5 kg) Power requirements • Power dissipation: 300 W (max) • AC input voltage: 100 to 240 VAC • AC input current: 6 A • Frequency: 50 to 60 Hz • The FortiGate-800/800F unit ma
Inhaltszusammenfassung zur Seite Nr. 16
Getting started Turning the FortiGate unit power on and off Table 1: FortiGate-800 LED indicators LED State Description Power Green The FortiGate unit is powered on. Off The FortiGate unit is powered off. Internal Amber The correct cable is in use and the connected equipment has power. External DMZ Flashing Network activity at this interface. HA amber 1 to 4 Green The interface is connected. Internal, External, DMZ and HA connect at up to 1000 Mbps. Interfaces 1, 2, 3 and 4 connect at up to 1
Inhaltszusammenfassung zur Seite Nr. 17
Getting started To connect to the web-based manager, you need: • a computer with an ethernet connection, • Internet Explorer version 6.0 or higher, • a crossover cable or an ethernet hub and two ethernet cables. Note: You can use the web-based manager with recent versions of most popular web browsers. The web-based manager is fully supported for Internet Explorer version 6.0 or higher. To connect to the web-based manager 1 Set the IP address of the computer with an ethernet connection to the s
Inhaltszusammenfassung zur Seite Nr. 18
Getting started Note: The following procedure describes how to connect to the CLI using Windows HyperTerminal software. You can use any terminal emulation program. To connect to the CLI 1 Connect the serial cable to the communications port of your computer and to the FortiGate Console port. Use the RJ-45 to DB-9 convertor if your PC communications port requires a DB-9 connector. 2 Make sure that the FortiGate unit is powered on. 3 Start HyperTerminal, enter a name for the connection, and sele
Inhaltszusammenfassung zur Seite Nr. 19
Getting started Factory default NAT/Route mode network configuration Factory default FortiGate configuration settings The FortiGate unit is shipped with a factory default configuration. The default configuration allows you to connect to and use the FortiGate web-based manager to configure the FortiGate unit onto the network. To configure the FortiGate unit onto the network you add an administrator password, change network interface IP addresses, add DNS server IP addresses, and configure bas
Inhaltszusammenfassung zur Seite Nr. 20
Factory default Transparent mode network configuration Getting started Table 3: Factory default NAT/Route mode network configuration (Continued) IP: 0.0.0.0 HA interface Netmask: 0.0.0.0 Administrative Access: Ping IP: 0.0.0.0 Port 1 Netmask: 0.0.0.0 Administrative Access: Ping IP: 0.0.0.0 Port 2 Netmask: 0.0.0.0 Administrative Access: Ping IP: 0.0.0.0 Port 3 Netmask: 0.0.0.0 Administrative Access: Ping IP: 0.0.0.0 Port 4 Netmask: 0.0.0.0 Administrative Access: Ping Default Gateway (for default