Http://Docs.fortinet.com - Fortinet FortiMail-100 Install Manual

Secure messaging platform
Hide thumbs Also See for FortiMail-100:
Table of Contents

Advertisement

Server mode deployment
Configuring the firewall addresses
Configuring the service group
FortiMail™ Secure Messaging Platform Version 4.0 Patch 1 Install Guide
Revision 2

http://docs.fortinet.com/

Feedback
Configuring the firewall policy
Note: The following procedures use a FortiGate unit running FortiOS v3.0 MR7. If you are
using a different firewall appliance, consult the appliance's documentation for completing
similar configurations.
In order to create the outgoing firewall policy that governs traffic from the IP addresses of
local email users to the IP address of the FortiMail unit, you must first define the IP
addresses of the local email users and the FortiMail unit by creating firewall address
entries.
To add a firewall address for local email users
1 Go to Firewall > Address > Address.
2 Select Create New.
3 Complete the following:
Name
Type
Subnet /IP Range
Interface
4 Select OK.
To add a firewall address for the FortiMail unit
1 Go to Firewall > Address > Address.
2 Select Create New.
3 Complete the following:
Name
Type
Subnet /IP Range
Interface
4 Select OK.
In order to create a firewall policy that governs only FortiMail-related traffic, you must first
a create service group that contains services that define protocols and port numbers used
in that traffic.
To add a service group for email user traffic to the FortiMail unit
1 Go to Firewall > Service > Group.
2 Select Create New.
3 In Group Name, enter a name to identify the service group entry, such as
local_email_users_services.
4 In the Available Services area, select HTTP, HTTPS, SMTP, POP3, and IMAP, then
select the right arrow to move them to the Members area.
Enter a name to identify the firewall address entry, such as
local_email_users_address.
Select Subnet/IP Range.
Enter 172.16.1.0/24.
Select internal.
Enter a name to identify the firewall address entry, such as
FortiMail_address.
Select Subnet/IP Range.
Enter 10.10.10.5/32.
Select wan1.
Example 2: FortiMail unit in front of a firewall
149

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents