Download Print this page

Fortinet FortiGate-300 Quick Start Manual page 2

Hide thumbs Also See for FortiGate-300:

Advertisement

5
Collecting information
NAT/Route mode
Administrator
password:
IP:
Internal
interface:
Netmask:
IP:
Netmask:
Default Gateway:
Primary DNS Server:
External
Secondary DNS Server: ____.____.____.____
interface:
User Name: _______________________________
Password: ________________________________
If the FortiGate-300 receives its address by DHCP,
you do not need to record settings for the External
interface.
Optionally, you can use the Setup Wizard to configure the FortiGate-300 to allow
Internet access to servers located on your internal networks, and to function as a
DHCP server for computers on your internal network. For a list of optional settings, see
the Documentation CD-ROM.
6
Configuring the FortiGate-300
Using the
1. Connect the FortiGate-300 internal interface to the management computer Ethernet port. Use a cross-over Ethernet cable to connect the
Setup Wizard
2. Configure the management computer to be on the same subnet as the internal interface of the FortiGate-300. To do this, change the IP address
3. To access the FortiGate web-based manager, start Internet Explorer and browse to https://192.168.1.99 (remember to include the "s" in https://).
4. Type admin in the Name field and select Login.
NAT/Route mode
1. Start the Setup Wizard by selecting the middle button on the upper right of the
FortiGate web-based manager.
2. Configure these settings:
Administrator password.
Internal interface IP address and netmask.
External interface. Configure one of the following:
Manual (requires external interface IP address and netmask, default gate-
way address, and DNS server addresses)
DHCP
PPPoE (requires user name and password)
Optional DHCP server and internal network server settings.
3. Select Finish to confirm the changes and close the Setup Wizard.
Note: If you change the internal interface IP address (NAT/Route mode) or management IP address (Transparent mode) you must use this address to reconnect to the web-based manager and Setup Wizard.
Using the
Command Line Interface
NAT/Route mode
1. Configure the Internal interface.
set system interface internal mode static ip <intf_ip> <netmask_ip>
2. Configure the External interface.
Static: set system interface external mode static ip <intf_ip> <netmask_ip>
DHCP: set system interface external mode dhcp connection enable
PPPoE: set system interface external mode pppoe password <password_str> username
<name_str> connection enable
3. Configure the DMZ/HA interface.
set system interface dmz/ha mode static ip <intf_ip> <netmask_ip>
4. Configure the DNS server IP address.
set system dns primary <dns-server_ip>
5. Configure the default route to the Default Gateway (not required for PPPoE and DHCP).
set system route number 1 gw1 <gateway_ip>
Using the
Control Buttons and LCD
NAT/Route mode
1. Use the control buttons and LCD to:
configure the interface IP addresses and netmasks.
configure the Default Gateway.
2. Press Enter to confirm changes and Esc to return to the Main Menu.
Note: When you enter an IP address, the LCD display always shows three digits for each part of the IP address. For example, the IP address 192.168.100.1 appears on the LCD display as 192.168.100.001.
7
Completing the configuration
Volume 1: FortiGate Installation and Configuration Guide
Volume 2: FortiGate VPN Guide
Volume 3: FortiGate Content Protection Guide
____.____.____.____
____.____.____.____
____.____.____.____
____.____.____.____
____.____.____.____
____.____.____.____
devices directly. Use straight-through Ethernet cables to connect the devices through a hub or switch.
of the management computer to 192.168.1.2 and the netmask to 255.255.255.0.
You might also have to change the IP address of the management computer to be on the same subnet as the new IP address.
1. Use a null modem cable to connect the FortiGate CONSOLE interface to the management computer serial port.
2. Start a terminal emulation program (HyperTerminal) on the management computer. Use these settings:
Baud Rate (bps) 115200, Data bits 8, Parity None, Stop bits 1, and Flow Control None.
3. At the FortiGate Login: prompt, type admin and press Enter twice.
Use the Enter key to access the Main Menu, to select menu items, to move right when entering IP addresses, and to
confirm changes.
Use the arrow keys to move up and down in the Main Menu, and to change IP address numbers.
Use the Esc key to return to the Main Menu, and to move left when entering IP addresses.
Use these tables to record your FortiGate-300 configuration.
Transparent mode
Administrator
password:
IP:
Management IP:
Netmask:
Default Gateway:
Primary DNS Server:
DNS Settings:
Secondary DNS Server:
The management IP address and netmask must be valid for the network from which
you will manage the FortiGate-300. A default gateway is required whenever the
FortiGate unit connects to a router to reach the Internet.
Steps for using the configuration tool that you have chosen.
Transparent mode
1. Use the FortiGate web-based manager to change from NAT/Route mode to
Transparent mode.
Go to System > Status.
Select Change to Transparent Mode.
Select OK.
2. Change the IP address of the management computer to 10.10.10.2 and use
Internet Explorer to browse to https://10.10.10.1.
3. Start the Setup Wizard by selecting the middle button on the upper right of the
FortiGate web-based manager.
4. Configure the administrator password, management IP address and netmask,
default gateway IP address, and primary and secondary DNS server addresses.
5. Select Finish to confirm the changes and close the Setup Wizard.
Transparent mode
1. Change from NAT/Route mode to Transparent mode.
set system opmode transparent
2. Configure the Management IP address.
set system management ip <intf_ip> <netmask_ip>
3. Configure the DNS server IP address.
set system dns primary <dns-server_ip>
4. Configure the default route to the Default Gateway.
set system route number 1 gw1 <gateway_ip>
Transparent mode
1. Use the control buttons and LCD to:
change the operating mode from NAT/Route to Transparent.
configure the Management Interface IP address and netmask.
configure the Default Gateway.
2. Press Enter to confirm changes and Esc to return to the Main Menu.
Congratulations! You have finished configuring the basic settings. Your network is now protected
from Internet-based threats. To explore the full range of configuration options, see the online
help or the Documentation CD-ROM:
Volume 4: FortiGate NIDS Guide
Volume 5: FortiGate Logging and Message Reference Guide
Volume 6: FortiGate CLI Reference Guide
____.____.____.____
____.____.____.____
____.____.____.____
____.____.____.____
____.____.____.____

Advertisement

loading