Fortinet Version 3.0 manual Connectors, Factory default configuration

Page 22

FortiBridge unit basic information

Setting up FortiBridge units

Connectors

Table 5: FortiBridge-1000 connectors

Connector

Type

 

Speed

Protocol

Description

 

 

 

 

 

 

 

 

 

 

 

INT 1

RJ-45

 

10/100/1000

Ethernet

 

Copper gigabit ethernet connection to the internal

 

 

 

 

Base-T

 

 

 

network.

 

 

 

 

 

 

 

 

 

 

 

 

EXT 1

RJ-45

 

10/100/1000

Ethernet

 

Copper gigabit ethernet connection to the

 

 

 

 

Base-T

 

 

 

external network.

 

 

 

 

 

 

 

 

 

 

 

INT 2

RJ-45

 

10/100/1000

Ethernet

 

Copper gigabit ethernet connection to the

 

 

 

 

Base-T

 

 

 

FortiGate unit internal interface.

 

 

 

 

 

 

 

 

 

 

 

EXT 2

RJ-45

 

10/100/1000

Ethernet

 

Copper gigabit ethernet connection to the

 

 

 

 

Base-T

 

 

 

FortiGate unit external interface.

 

 

 

 

 

 

 

 

 

 

 

CONSOLE

RJ-45

 

9600 bps

RS-232

 

Optional connection to the management

 

 

 

 

 

 

serial

 

computer.

 

 

 

 

 

 

 

 

 

 

Provides access to the command line interface

 

 

 

 

 

 

 

 

 

(CLI).

 

 

 

 

 

 

 

 

 

 

 

Table 6: FortiBridge-1000F connectors

 

 

 

 

 

 

 

 

 

 

 

 

Connector

 

Type

 

Speed

 

 

Protocol

Description

 

 

 

 

 

 

INT 1, INT 2,

LC SFP

1000Base-SX

 

Ethernet

Multimode fiber optic connections

EXT 1,

 

 

 

 

 

 

 

 

 

to gigabit optical networks. The

EXT 2, and

 

 

 

 

 

 

 

 

 

FortiBridge-1000F is shipped with

management

 

 

 

 

 

 

 

4 1000Base-SX Small Formfactor

 

 

 

 

 

 

 

 

 

 

Pluggable (SFP) transceivers that

 

 

 

 

 

 

 

 

 

 

you must insert into the INT 1, INT

 

 

 

 

 

 

 

 

 

 

2, EXT 1, and EXT 2 sockets on

 

 

 

 

 

 

 

 

 

 

the back panel. The management

 

 

 

 

 

 

 

 

 

 

connection is optional.

CONSOLE

 

RJ-45

9600 bps

 

RS-232

Console connection to the

 

 

 

 

 

 

 

 

serial

command line interface (CLI).

Factory default configuration

Table 7: FortiBridge-1000 and 1000F unit factory default network configuration

Administrator account

admin

 

 

Password

(none)

 

 

Management IP/Netmask

192.168.1.99/255.255.255.0

 

 

Management Access

Telnet, SSH and ping access to the INT 1

 

interface. No management access to the EXT 1

 

interface.

Routes

(none)

 

 

Primary DNS

65.39.139.53

 

 

Secondary DNS

65.39.139.63

 

 

22

FortiBridge Version 3.0 Administration Guide

09-30000-0163-20061109

Image 22
Contents M i n i s t r a t i o n G u i d e Trademarks Regulatory complianceContents Using the CLI Configuration and operating proceduresConfig CLI commands Execute CLI commands IndexPage About FortiBridge About this documentFortinet tools and documentation CD Customer service and technical supportFortinet documentation Fortinet Knowledge CenterFortiBridge operating principles Example FortiBridge applicationConnecting the FortiBridge unit Connecting the FortiBridge-1000 copper gigabit ethernetConnecting the FortiBridge-1000F fiber gigabit ethernet Normal mode operationHow the FortiBridge unit monitors the FortiGate unit Normal mode operation Probes and FortiGate firewall policiesEnabling probes to detect FortiGate software failure Enabling probes to detect FortiGate hardware failureProbe interval and probe threshold Bypass mode operation FortiBridge power failureExample FortiGate HA cluster FortiBridge application Example configuration with other FortiGate interfaces Example configuration with other FortiGate interfaces Example configuration with other FortiGate interfaces FortiBridge-1000 Package contents FortiBridge unit basic informationFortiBridge-1000F Package contents Mounting instructionsTechnical specifications LED indicatorsConnectors Factory default configurationConnecting and turning on the FortiBridge unit Connecting and turning on the FortiBridge-1000 unitTo connect and turn on the FortiBridge-1000 unit Connecting and turning on the FortiBridge-1000F unitTo connect and turn on the FortiBridge-1000F unit FortiBridge-1000 login Connecting to the command line interface CLIConnecting to the FortiBridge console To connect to the FortiBridge console for the first timeTo connect to the CLI using Telnet Completing the basic FortiBridge configurationConnecting to the FortiBridge CLI using Telnet Welcome FortiBridge-1000 #Changing the management IP address Adding an administrator passwordTo add an administrator password To change the management IP addressTo change DNS server IP addresses Changing DNS server IP addressesAdding static routes To add static routesAdding administrator accounts Allowing management access to the EXT 1 interfaceChanging the system time and date Installing FortiBridge unit firmware Resetting to the factory default configurationTo reset to factory defaults from the FortiBridge CLI Execute restore image FBG1000-v10-build010-FORTINET.out To upgrade to a new firmware versionExecute restore image namestr tftpip Upgrading to a new firmware versionReverting to a previous firmware version To revert to a previous firmware versionHit any key to stop autoboot Installing firmware from a system rebootTo install firmware from a system reboot Enter Tftp server addressEnter firmware image file image.out Get system statusConfiguration and operating procedures Example network settingsConfiguring FortiBridge probes Configuring FortiBridge probesProbe settings To configure probe settingsConfig probe probelist ping set status enable End To enable and configure FortiBridge probesEnabling probes To verify that probes are functioning Config probe probelist Imap set status enable EndVerifying that probes are functioning Go to System Status SessionConfiguring FortiBridge alerts Tuning the failure threshold and probe intervalFortiBridge alert email To configure alert emailConfig alertemail setting set server mail.myorg.com End FortiBridge syslogConfig log syslogd setting set server End To configure FortiBridge syslogFortiBridge Snmp Config system snmp community edit Set name snmp1 End Recovering from a FortiGate failureTo add and enable an Snmp community To resume normal operation from bypass modeExecute switch-mode Manually switching between FortiBridge operating modesBacking up and restoring the FortiBridge configuration To back up the FortiBridge configurationBacking up and restoring the FortiBridge configuration Backing up and restoring the FortiBridge configuration To use the CLI to configure SSH or Telnet access Connecting to the FortiBridge CLI using SSH or TelnetSetting administrative access for SSH or Telnet CLI basicsSet allowaccess ping telnet ssh Other access methodsConnecting to the FortiBridge CLI using SSH Get system interface namestrTo connect to the CLI using SSH Connecting to the FortiBridge CLI using SSH or Telnet Config CLI commands Command syntax pattern Alertemail settingExamples Related Commands Log syslogd setting ExampleGet probe probelist http Probe probelist ping http ftp pop3 smtp imapGet probe probelist Show probe probelistProbe setting SyslogSystem accprofile Rw wGet system accprofile policyprofile Get system accprofileShow system accprofile System admin Password passwordstrGet system admin newadmin Get system adminShow system admin Get system console Config system console set EndSystem console Show system consoleGet system dns System dnsShow system dns Get system status System failclose FailbypassSystem failclose System global MinutesintegerGet system global Show system globalGet system interface internal System interface internal externalShow system interface internal Config system manageip Set ip 192.168.2.80 255.255.255.0 end System manageipSystem route DistanceintegerConfig hosts System snmp communityGet system snmp community Show system snmp communityExecute CLI commands Execute backup config filenamestr tftp-serveripv4 BackupCommand syntax Execute backup config fbdg.cfgExecute date datestr datestr has the form mm/dd/yyyy, where DateExecute date 09/17/2004 Factoryreset Execute factoryresetPing Execute ping addressipv4 host-namestrReboot Execute rebootRestore Execute restore config backupconfigSwitch-mode Time Execute time timestrTime Index 09-30000-0163-20061109 Snmp SSH