Normal Mode Operation; How The Fortibridge Unit Monitors The Fortigate Unit - Fortinet Version 3.0 Administration Manual

Fortinet bridge administration guide
Hide thumbs Also See for Version 3.0:
Table of Contents

Advertisement

FortiBridge operating principles
1
2
3
4
1
2
3
4

Normal mode operation

How the FortiBridge unit monitors the FortiGate unit

FortiBridge Version 3.0 Administration Guide
09-30000-0163-20061109
Connect the FortiBridge-1000 INT 2 interface to the FortiGate internal interface.
Connect the FortiGate external interface to the FortiBridge-1000 EXT 2 interface.
Connect the internal network to the FortiBridge-1000 INT 1 interface.
Connect the FortiBridge-1000 EXT 1 interface to the router.
Connecting the FortiBridge-1000F (fiber gigabit ethernet)
The FortiBridge-1000F unit contains 4 multimode fiber optic gigabit interfaces that
connect to the internal and external networks and to the FortiGate interfaces that
were connected to these networks. Use the following steps to connect a
FortiBridge-1000F unit to the network as shown in
Connect the FortiBridge-1000F INT 2 interface to the FortiGate internal interface.
Connect the FortiGate external interface to the FortiBridge-1000F EXT 2
interface.
Connect the internal network to the FortiBridge-1000F INT 1 interface.
Connect the FortiBridge-1000F EXT 1 interface to the router.
If the FortiGate unit is operating normally, the FortiBridge unit operates in Normal
mode. Traffic from the internal network enters the FortiBridge INT 1 interface then
exits the INT 2 interface to the FortiGate unit. The traffic from the FortiBridge
INT 2 interface enters the FortiGate internal interface. Firewall policies and
protection profiles are applied to the traffic by the FortiGate unit. Accepted traffic
then exits the FortiGate External interface and enters the FortiBridge EXT 2
interface. The traffic then exits the FortiBridge EXT 1 interface and goes to the
external network. Traffic from the external network reverses this sequence.
Figure 4: Normal mode traffic flow
Internal network
To monitor the FortiGate unit for failure, you must enable probes on the
FortiBridge unit. When you enable a probe, the FortiBridge unit sends packets
from the FortiBridge INT 2 interface, through the FortiGate unit to the FortiBridge
EXT 2 interface. If the EXT 2 interface receives the probe packets, the FortiGate
unit is operating normally. If the EXT 2 interface does not receive probe packets
the FortiBridge unit assumes that the FortiGate unit has failed.
Figure
(Normal mode)
INT 1
EXT 1
EXT 2
INT 2
Internal
External
(Transparent mode)
Normal mode operation
3.
Internet
Router
11

Advertisement

Table of Contents
loading

This manual is also suitable for:

Fortibridge 3.0

Table of Contents

Save PDF