Management - Fortinet FortiGate FortiGate-300 Administration Manual

Fortinet fortigate fortigate-300: user guide
Hide thumbs Also See for FortiGate FortiGate-300:
Table of Contents

Advertisement

System network

Management

FortiGate-300 Administration Guide
To delete a zone
You can only delete zones that have the Delete icon beside them in the zone list.
1
If you have added a virtual domain, go to System > Virtual Domain > Current
Virtual Domain and select the virtual domain from which to delete the zone.
2
Go to System > Network > Zone.
3
Select Delete to remove a zone from the list.
4
Select OK to delete the zone.
To edit a zone
1
If you have added a virtual domain, go to System > Virtual Domain > Current
Virtual Domain and select the virtual domain in which to edit the zone.
2
Go to System > Network > Zone.
3
Select Edit to modify a zone.
4
Select or deselect Block intra-zone traffic.
5
Select the names of the interfaces or VLAN subinterfaces to add to the zone.
6
Clear the check box for the names of the interfaces or VLAN subinterfaces to remove
from the zone.
7
Select OK.
Configure the management interface in Transparent mode to set the management IP
address of the FortiGate unit. Administrators connect to this IP address to administer
the FortiGate unit. The FortiGate also uses this IP address to connect to the FDN for
virus and attack updates (see
You can also configure interfaces to control how administrators connect to the
FortiGate unit for administration. See
on page
56.
Controlling administrative access to a FortiGate interface connected to the Internet
allows remote administration of the FortiGate unit from any location on the Internet.
However, allowing remote administration from the Internet could compromise the
security of the FortiGate unit. You should avoid allowing administrative access for an
interface connected to the Internet unless this is required for your configuration. To
improve the security of a FortiGate unit that allows remote administration from the
Internet:
Use secure administrative user passwords,
Change these passwords regularly,
Enable secure administrative access to this interface using only HTTPS or SSH,
Do not change the system idle timeout from the default value of 5 minutes (see
set the system idle timeout" on page
"Update center" on page
"To control administrative access to an interface"
01-28006-0005-20041105
118).
83).
Management
"To
59

Advertisement

Table of Contents
loading

Table of Contents