Sign In
Upload
Manuals
Brands
Fortinet Manuals
Firewall
FortiGate FortiGate-4000
Fortinet FortiGate FortiGate-4000 Manuals
Manuals and User Guides for Fortinet FortiGate FortiGate-4000. We have
3
Fortinet FortiGate FortiGate-4000 manuals available for free PDF download: Administration Manual, Installation Manual, Quick Start Manual
Fortinet FortiGate FortiGate-4000 Administration Manual (390 pages)
Fortinet FortiGate FortiGate-4000: User Guide
Brand:
Fortinet
| Category:
Firewall
| Size: 5 MB
Table of Contents
Table of Contents
3
Introduction
13
About Fortigate Antivirus Firewalls
13
Antivirus Protection
14
Web Content Filtering
15
Spam Filtering
15
Firewall
15
Transparent Mode
16
Vlans and Virtual Domains
17
Intrusion Prevention System (IPS)
17
Vpn
18
High Availability
18
Secure Installation, Configuration, and Management
19
Document Conventions
20
Fortigate Documentation
22
Comments on Fortinet Technical Documentation
22
Related Documentation
22
Fortimanager Documentation
23
Forticlient Documentation
23
Fortimail Documentation
23
Fortilog Documentation
23
Customer Service and Technical Support
24
System Status
25
Console Access
25
Status
26
Viewing System Status
26
Unit Information
27
Interface Status
27
System Resources
27
Changing Unit Information
29
Session List
31
Changing the Fortigate Firmware
32
Upgrading to a New Firmware Version
33
Reverting to a Previous Firmware Version
34
Reverting to a Previous Firmware Version Using the Cli
35
Backup Config
36
Installing Firmware Images from a System Reboot Using the CLI
37
Restoring the Previous Configuration
39
Testing a New Firmware Image before Installing It
40
Installing and Using a Backup Firmware Image
42
Switching to the Backup Firmware Image
44
Switching Back to the Default Firmware Image
44
System Network
47
Interface
47
Interface Settings
48
Configuring Interfaces
53
Zone
57
Zone Settings
58
Management
59
Dns
60
Routing Table (Transparent Mode)
61
Routing Table List
61
Transparent Mode Route Settings
62
VLAN Overview
62
Fortigate Units and Vlans
63
Vlans in Nat/Route Mode
63
Rules for VLAN Ids
64
Rules for VLAN IP Addresses
64
Adding VLAN Subinterfaces
65
Vlans in Transparent Mode
66
Rules for VLAN Ids
68
Transparent Mode Virtual Domains and Vlans
68
Transparent Mode VLAN List
69
Transparent Mode VLAN Settings
69
Fortigate Ipv6 Support
71
System DHCP
73
Service
73
DHCP Service Settings
74
Server
75
DHCP Server Settings
76
Exclude Range
77
DHCP Exclude Range Settings
78
IP/MAC Binding
78
DHCP IP/MAC Binding Settings
79
Dynamic IP
79
System Config
81
System Time
81
Options
82
HA Configuration
85
Cluster Members
86
Configuring an HA Cluster
90
Managing an HA Cluster
94
Snmp
97
Configuring SNMP
98
SNMP Community
99
Fortigate Mibs
101
Fortigate Traps
102
Fortinet MIB Fields
103
Replacement Messages
106
Replacement Messages List
106
Changing Replacement Messages
107
Fortimanager
108
System Administration
109
Administrators
109
Administrators List
110
Administrators Options
110
Access Profiles
111
Access Profile List
112
Access Profile Options
112
System Maintenance
115
Backup and Restore
115
Backing up and Restoring
116
Update Center
118
Updating Antivirus and Attack Definitions
120
Enabling Push Updates
123
Enabling Push Updates through a Nat Device
124
Support
125
Sending a Bug Report
126
Registering a Fortigate Unit
127
Shutdown
129
System Virtual Domain
131
Virtual Domain Properties
132
Exclusive Virtual Domain Properties
132
Shared Configuration Settings
133
Administration and Management
134
Virtual Domains
134
Adding a Virtual Domain
135
Selecting a Virtual Domain
135
Selecting a Management Virtual Domain
135
Configuring Virtual Domains
136
Adding Interfaces, VLAN Subinterfaces, and Zones to a Virtual Domain
136
Configuring Routing for a Virtual Domain
138
Configuring Firewall Policies for a Virtual Domain
138
Configuring Ipsec VPN for a Virtual Domain
140
Router
141
Static
141
Static Route List
143
Static Route Options
144
Policy
145
Policy Route List
145
Policy Route Options
146
Rip
146
General
147
Networks List
148
Networks Options
149
Interface List
149
Interface Options
150
Distribute List
151
Distribute List Options
152
Offset List
153
Offset List Options
153
Router Objects
154
Access List
154
New Access List
154
New Access List Entry
155
Prefix List
155
New Prefix List
156
New Prefix List Entry
157
Route-Map List
157
New Route-Map
158
Route-Map List Entry
159
Key Chain List
160
New Key Chain
160
Key Chain List Entry
161
Monitor
162
Routing Monitor List
162
CLI Configuration
163
Get Router Info Ospf
163
Get Router Info Protocols
163
Get Router Info Rip
164
Config Router Ospf
164
Config Network
179
Config Redistribute
184
Config Router Static6
187
Firewall
189
Policy
190
How Policy Matching Works
190
Policy List
190
Policy Options
191
Advanced Policy Options
194
Traffic Shaping
195
Differentiated Services
195
Configuring Firewall Policies
196
Policy CLI Configuration
197
Address
198
Address List
199
Address Options
199
Configuring Addresses
200
Address Group List
201
Address Group Options
201
Configuring Address Groups
202
Service
202
Predefined Service List
203
Custom Service List
206
Custom Service Options
206
Configuring Custom Services
208
Service Group List
209
Service Group Options
209
Configuring Service Groups
210
Schedule
210
One-Time Schedule List
211
One-Time Schedule Options
211
Configuring One-Time Schedules
212
Recurring Schedule List
212
Recurring Schedule Options
213
Configuring Recurring Schedules
213
Virtual IP
214
Virtual IP List
215
Virtual IP Options
215
Configuring Virtual Ips
216
IP Pool
218
IP Pool List
219
IP Pool Options
219
Configuring IP Pools
220
IP Pools for Firewall Policies that Use Fixed Ports
220
IP Pools and Dynamic NAT
221
Protection Profile
221
Protection Profile List
222
Default Protection Profiles
222
Protection Profile Options
222
Configuring Web Filtering Options
224
Configuring Web Category Filtering Options
224
Configuring Spam Filtering Options
225
Configuring Protection Profiles
227
CLI Configuration
228
Users and Authentication
233
Setting Authentication Timeout
234
Local
234
Local User List
234
Local User Options
234
Radius
235
RADIUS Server List
235
RADIUS Server Options
236
Ldap
236
LDAP Server List
237
LDAP Server Options
237
User Group
239
User Group List
239
User Group Options
240
CLI Configuration
241
Peer
241
Peergrp
242
Vpn
245
Phase 1
246
Phase 1 List
246
Phase 1 Basic Settings
247
Phase 1 Advanced Options
248
Configuring Xauth
249
Phase 2
250
Phase 2 List
250
Phase 2 Basic Settings
251
Phase 2 Advanced Options
252
Manual Key
253
Manual Key List
254
Manual Key Options
254
Concentrator
255
Concentrator List
255
Concentrator Options
256
Ping Generator
256
Ping Generator Options
257
Monitor
257
Dialup Monitor
258
Static IP and Dynamic DNS Monitor
258
Pptp
259
Setting up a PPTP-Based VPN
259
Enabling PPTP and Specifying a PPTP Range
260
Configuring a Windows 2000 Client for PPTP
261
Configuring a Windows XP Client for PPTP
261
PPTP Passthrough
262
L2Tp
263
Setting up a L2TP-Based VPN
264
Enabling L2TP and Specifying an L2TP Range
264
Configuring a Windows 2000 Client for L2TP
265
Configuring a Windows XP Client for L2TP
266
Certificates
268
Viewing the Certificate List
269
Generating a Certificate Request
269
Installing a Signed Certificate
271
Enabling VPN Access for Specific Certificate Holders
272
CLI Configuration
273
Ipsec Phase1
273
Ipsec Phase2
275
Ipsec Vip
276
Authenticating Peers with Preshared Keys
278
Gateway-To-Gateway VPN
278
Dialup VPN
279
Dynamic DNS VPN
279
Manual Key Ipsec VPN
280
Adding Firewall Policies for Ipsec VPN Tunnels
280
Setting the Encryption Policy Direction
280
Setting the Source Address for Encrypted Traffic
280
Setting the Destination Address for Encrypted Traffic
281
Adding an Ipsec Firewall Encryption Policy
281
Internet Browsing through a VPN Tunnel
281
Configuring Internet Browsing through a VPN Tunnel
282
Ipsec VPN in Transparent Mode
283
Special Rules
283
Hub and Spoke Vpns
284
Configuring the Hub
284
Adding a Vpn Concentrator
285
Configuring Spokes
286
Redundant Ipsec Vpns
287
Configuring Redundant Ipsec Vpns
287
Configuring Ipsec Virtual IP Addresses
288
Troubleshooting
290
Ips
291
Signature
292
Predefined
292
Predefined Signature List
293
Configuring Predefined Signatures
294
Configuring Parameters for Dissector Signatures
295
Custom
296
Adding Custom Signatures
297
Backing up and Restoring Custom Signature Files
297
Anomaly
298
Configuring an Anomaly
299
Anomaly CLI Configuration
301
Configuring IPS Logging and Alert Email
302
Default Fail Open Setting
302
Antivirus
303
File Block
304
File Block List
305
Configuring the File Block List
306
Quarantine
306
Quarantined Files List
306
Quarantined Files List Options
307
Autosubmit List
308
Autosubmit List Options
308
Configuring the Autosubmit List
308
Config
309
Config
310
Virus List
310
Grayware
311
Grayware Options
311
CLI Configuration
312
System Global Av_Failopen
312
System Global Optimize
313
Heuristic
314
Quarantine
315
Service Http
316
Service Ftp
317
Service Pop3
318
Service Imap
318
Service Smtp
319
Web Filter
321
Content Block
322
Web Content Block List
323
Web Content Block Options
323
Configuring the Web Content Block List
324
URL Block
324
Web URL Block List
325
Web URL Block Options
325
Configuring the Web URL Block List
325
Web Pattern Block List
326
Web Pattern Block Options
327
Configuring Web Pattern Block
327
URL Exempt
327
URL Exempt List
328
URL Exempt List Options
328
Configuring URL Exempt
328
Category Block
329
Fortiguard Managed Web Filtering Service
329
Category Block Configuration Options
330
Configuring Web Category Block
331
Category Block Reports
331
Category Block Reports Options
332
Generating a Category Block Report
332
Category Block CLI Configuration
332
Script Filter
333
Web Script Filter Options
334
Spam Filter
335
Order of Spam Filter Operations
337
IP Address
338
IP Address List
338
IP Address Options
338
Configuring the IP Address List
338
Rbl & Ordbl
339
RBL & ORDBL List
340
RBL & ORDBL Options
340
Configuring the RBL & ORDBL List
340
Email Address
341
Email Address List
341
Email Address Options
341
Configuring the Email Address List
341
MIME Headers
342
MIME Headers List
343
MIME Headers Options
343
Configuring the MIME Headers List
343
Banned Word
344
Banned Word List
344
Banned Word Options
345
Configuring the Banned Word List
346
Using Perl Regular Expressions
346
Log & Report
349
Log Config
350
Log Setting Options
350
Syslog Settings
353
Alert E-Mail Options
354
Log Filter Options
355
Traffic Log
356
Event Log
356
Configuring Log Filters
358
Enabling Traffic Logging
358
Log Access
360
Disk Log File Access
360
Viewing Log Messages
361
Searching Log Messages
364
CLI Configuration
365
Fortilog Setting
365
Syslogd Setting
366
Fortiguard Categories
369
Fortigate Maximum Values
375
Glossary
379
Index
383
Advertisement
Fortinet FortiGate FortiGate-4000 Installation Manual (82 pages)
Fortinet FortiGate FortiGate-4000: Install Guide
Brand:
Fortinet
| Category:
Firewall
| Size: 3 MB
Table of Contents
Installation Guide
1
Table of Contents
3
Introduction
7
Secure Installation, Configuration, and Management
8
Web-Based Manager
8
Command Line Interface
9
Setup Wizard
9
Document Conventions
9
Fortinet Documentation
11
Comments on Fortinet Technical Documentation
11
Customer Service and Technical Support
12
Getting Started
13
Warnings and Cautions
14
Warning
14
Package Contents
14
Physical Description
16
Front Panel Features
17
Fortiblade-4010 Module
17
KVM Switch Module
19
Rear Panel Features
20
Power Supplies and Power Connections
21
Cooling Fan Trays
22
Management Module
22
10/100 out of Band Management Module
23
Pass-Through Interface Module
24
Switched Interface Module
25
Installing Hardware
26
Choosing a Suitable Environment
26
Choosing a Rack
26
Attaching the Mounting Rail
27
Installing Fortiblade-4010 Modules
27
Fortigate-4000P Network Connections
28
Fortigate-4000S Network Connections
29
Out of Band Management Connections
29
Console Management Connections
29
Turning Fortigate-4000 Chassis Power on and off
30
Turning on Fortigate-4000 Chassis Power
30
Turning off Fortigate-4000 Chassis Power
31
Hot Swapping Modules
31
Hot Swapping Fortiblade-4010 Modules
31
Hot Swapping Cooling Fan Trays
32
Hot Swapping Power Supplies
32
Hot Swapping Interface Modules
33
Hot Swapping the 10/100 out of Band Management Module
33
Hot Swapping the Management Module
33
Hot Swapping the KVM Switch Module
34
Connecting to the Web-Based Manager
34
Connecting to the Fortigate-4000 Internal Interface Module
34
Connecting to the Fortigate-4000 10/100 out of Band Management Module
35
Connecting to the Command Line Interface (CLI)
36
Factory Default Configuration
37
Factory Default Nat/Route Mode Network Configuration
38
Factory Default Transparent Mode Network Configuration
38
Factory Default Firewall Configuration
39
Factory Default Protection Profiles
40
Planning the Fortigate Configuration
41
Nat/Route Mode Standalone Configuration
41
Transparent Mode Standalone Configuration
42
Fortigate-4000 HA Configuration
43
Fortigate-4000 Units with External Load Balancers
44
Next Steps
45
Nat/Route Mode Installation
47
Preparing to Configure the Fortigate Unit in Nat/Route Mode
47
DHCP or Pppoe Configuration
48
Using the Web-Based Manager
48
Configuring Basic Settings
49
Using the Command Line Interface
50
Configuring the Fortigate Unit to Operate in Nat/Route Mode
50
Using the Setup Wizard
53
Starting the Setup Wizard
55
Reconnecting to the Web-Based Manager
55
Connecting the Fortigate Unit to the Network(S)
55
Configuring the Networks
56
Next Steps
56
Transparent Mode Installation
59
Preparing to Configure Transparent Mode
59
Out of Band Management Interface
60
Using the Web-Based Manager
60
Reconnecting to the Web-Based Manager
61
Using the Command Line Interface
61
Configure the out of Band Management Interface
63
To Configure the Default Gateway
63
Using the Setup Wizard
64
Reconnecting to the Web-Based Manager
64
Connecting the Fortigate Unit to Your Network
65
Next Steps
65
High Availability Installation
67
Priorities of Heartbeat Device and Monitor Priorities
67
Configuring Fortigate Units for HA Operation
67
High Availability Configuration Settings
67
Configuring Fortigate Units for HA Using the Web-Based Manager
69
Configuring Fortigate Units for HA Using the CLI
70
Connecting the Cluster to Your Networks
71
Installing and Configuring the Cluster
73
Switched Interface Configuration
75
Default Configuration
75
Connecting to the Switched Interface CLI
75
CLI Commands
76
Index
81
Fortinet FortiGate FortiGate-4000 Quick Start Manual (2 pages)
Fortinet FortiGate FortiGate-4000: Quick Start
Brand:
Fortinet
| Category:
Firewall
| Size: 1 MB
Table of Contents
Quickstart Guide
1
Planning the Configuration
1
Transparent Mode
1
Choosing a Configuration Tool
1
Fortigate-4000 LED Indicators
1
Checking the Package Contents
1
Connecting the Fortigate-4000
1
General Settings
2
Using the Command Line Interface
2
Management Module
2
Completing the Configuration
2
Collecting Information
2
Configuring the Fortigate-4000
2
Restarting the Fortigate-4000
2
Advertisement
Advertisement
Related Products
Fortinet FortiGate-400A
Fortinet FortiGate FortiGate-400
Fortinet FortiGate FortiGate-100A
Fortinet FortiGate FortiGate-3600
Fortinet FortiGate-60ADSL
Fortinet FortiGate-5050-R
Fortinet FortiGate-7920E
Fortinet FortiGate-7620E
Fortinet FortiGate-50 Series
Fortinet FortiGate-60M
Fortinet Categories
Firewall
Network Hardware
Wireless Access Point
Switch
Telephone
More Fortinet Manuals
Login
Sign In
OR
Sign in with Facebook
Sign in with Google
Upload manual
Upload from disk
Upload from URL