Configuration example: Multiple connections to the Internet
Registering your FortiGate unit
Configuring virus and attack definition updates
Configuration example: Multiple connections to the Internet
50
After purchasing and installing a new FortiGate unit, you can register the unit by going
to the System Update Support page, or using a web browser to connect to
http://support.fortinet.com and selecting Product Registration.
To register, enter your contact information and the serial numbers of the FortiGate
units that you or your organization have purchased. You can register multiple
FortiGate units in a single session without re-entering your contact information.
For more information about registration, see
page
128.
You can go to the System Update page to configure the FortiGate unit to automatically
check whether new versions of the virus definitions and attack definitions are
available. If it finds new versions, the FortiGate unit automatically downloads and
installs the updated definitions.
The FortiGate unit uses HTTPS on port 8890 to check for updates. The FortiGate
external interface must have a path to the FortiResponse Distribution Network (FDN)
using port 8890.
For information about configuring automatic virus and attack updates, see
antivirus and attack definitions" on page
This section describes some basic routing and firewall policy configuration examples
for a FortiGate unit with multiple connections to the Internet (see
topology, the organization operating the FortiGate unit uses two Internet service
providers to connect to the Internet. The FortiGate unit is connected to the Internet
using the external and DMZ interfaces. The external interface connects to gateway 1,
operated by ISP1 and the DMZ interface connects to gateway 2, operated by ISP2.
You can add ping servers to interfaces and configure routing to control how traffic
uses each Internet connection. With this routing configuration, you can create firewall
policies to support multiple Internet connections.
This section provides some examples of routing and firewall configurations for the
FortiGate unit for multiple Internet connections. To use the information in this section,
you should be familiar with FortiGate routing (see
and FortiGate firewall configuration (see
The examples below show how to configure destination-based routing and policy
routing to control different traffic patterns.
•
Configuring ping servers
•
Destination-based routing examples
•
Policy routing examples
•
Firewall policy example
NAT/Route mode installation
"Registering FortiGate units" on
117.
"Configuring routing" on page
"Firewall configuration" on page
"Updating
Figure
9). In this
153)
185).
Fortinet Inc.
Need help?
Do you have a question about the FortiGate FortiGate-800 and is the answer not in the manual?