Management - Fortinet FortiGate FortiGate-1000A Administration Manual

Fortinet fortigate fortigate-1000a: user guide
Hide thumbs Also See for FortiGate FortiGate-1000A:
Table of Contents

Advertisement

Management

Management
68
5
Select the names of the interfaces or VLAN subinterfaces to add to the zone.
6
Clear the check box for the names of the interfaces or VLAN subinterfaces to remove
from the zone.
7
Select OK.
Configure the management interface in Transparent mode to set the management IP
address of the FortiGate unit. Administrators connect to this IP address to administer
the FortiGate unit. The FortiGate also uses this IP address to connect to the FDN for
virus and attack updates (see
You can also configure interfaces to control how administrators connect to the
FortiGate unit for administration. See
on page
65.
Controlling administrative access to a FortiGate interface connected to the Internet
allows remote administration of the FortiGate unit from any location on the Internet.
However, allowing remote administration from the Internet could compromise the
security of the FortiGate unit. You should avoid allowing administrative access for an
interface connected to the Internet unless this is required for your configuration. To
improve the security of a FortiGate unit that allows remote administration from the
Internet:
Use secure administrative user passwords,
Change these passwords regularly,
Enable secure administrative access to this interface using only HTTPS or SSH,
Do not change the system idle timeout from the default value of 5 minutes (see
set the system idle timeout" on page
Figure 17: Management
Management
Enter the management IP address and netmask.
address for the network that you want to manage the FortiGate unit
IP/Netmask
from.
Default
Enter the default gateway address.
Gateway
Management
Select the virtual domain from which you want to perform system
management.
Virtual Domain
To configure the management interface
1
Go to System > Network > Management.
2
Enter the Management IP/Netmask.
"Update center" on page
"To control administrative access to an interface"
01-28011-0254-20051115
132).
91).
This must be a valid IP
System Network
"To
Fortinet Inc.

Advertisement

Table of Contents
loading

Table of Contents