Fortinet Version 3.0 manual System global, Minutesinteger

Page 66

system global

config CLI commands

system global

Use this command to configure global settings that affect various FortiBridge systems and configurations.

Command syntax pattern

config system global

set <keyword> <variable> end

config system global unset <keyword>

end

get system global show system global

Keywords and variables

Description

Default

 

 

 

admintimeout

Set the administrator idle timeout to control the

5

<minutes_integer>

amount of inactive time before the administrator must

 

 

log in again. The maximum admintimeout is 480

 

 

minutes (8 hours). To improve security keep the idle

 

 

timeout at the default value.

 

 

 

 

dst {disable enable}

Enable or disable daylight saving time.

disable

 

If you enable daylight saving time, the FortiBridge unit

 

 

adjusts the system time when the time zone changes

 

 

to daylight saving time and back to standard time.

 

 

 

 

heartbeat {disable

For future use.

disable

enable }

 

 

hostname <name_str>

Type a name for this FortiBridge unit.

FortiBridge model

 

 

name.

interface-speed {100full

This command is only available for the FBG-1000.

auto

100half 10full

Set the network interface speed or allow each

 

10half auto }

interface to auto-sense the correct speed. Set to

 

 

auto, each FortiBridge network interface will

 

 

autosense the correct speed and adjust accordingly. If

 

 

the interface-speedcommand is used to specify a

 

 

speed, all FortiBridge interfaces are locked to the

 

 

selected speed.

 

 

Although the FortiBridge supports 10/100/1000mbps

 

 

speeds when set to auto, 1000half and 1000full are

 

 

not available for manual selection.

 

 

Some early units will return an Not supported by this

 

 

hardware error when this command is invoked. This is

 

 

normal as hardware support for interface-speed

 

 

was only added in later units.

 

ntpserver {<name_str>

Enter the domain name or IP address of a Network

132.246.168.148

<address_ipv4>}

Time Protocol (NTP) server.

 

ntpsync {disable

Enable or disable automatically updating the system

disable

enable}

date and time by connecting to a Network Time

 

Protocol (NTP) server. For more information about

 

 

NTP and to find the IP address of an NTP server that

 

 

you can use, see http://www.ntp.org.

 

 

 

 

66

FortiBridge Version 3.0 Administration Guide

09-30000-0163-20061109

Image 66
Contents M i n i s t r a t i o n G u i d e Trademarks Regulatory complianceContents Configuration and operating procedures Using the CLIConfig CLI commands Execute CLI commands IndexPage About FortiBridge About this documentFortinet tools and documentation CD Customer service and technical supportFortinet documentation Fortinet Knowledge CenterFortiBridge operating principles Example FortiBridge applicationConnecting the FortiBridge unit Connecting the FortiBridge-1000 copper gigabit ethernetNormal mode operation Connecting the FortiBridge-1000F fiber gigabit ethernetHow the FortiBridge unit monitors the FortiGate unit Normal mode operation Probes and FortiGate firewall policiesEnabling probes to detect FortiGate hardware failure Enabling probes to detect FortiGate software failureProbe interval and probe threshold Bypass mode operation FortiBridge power failureExample FortiGate HA cluster FortiBridge application Example configuration with other FortiGate interfaces Example configuration with other FortiGate interfaces Example configuration with other FortiGate interfaces FortiBridge-1000 Package contents FortiBridge unit basic informationFortiBridge-1000F Package contents Mounting instructionsTechnical specifications LED indicatorsConnectors Factory default configurationConnecting and turning on the FortiBridge unit Connecting and turning on the FortiBridge-1000 unitConnecting and turning on the FortiBridge-1000F unit To connect and turn on the FortiBridge-1000 unitTo connect and turn on the FortiBridge-1000F unit FortiBridge-1000 login Connecting to the command line interface CLIConnecting to the FortiBridge console To connect to the FortiBridge console for the first timeTo connect to the CLI using Telnet Completing the basic FortiBridge configurationConnecting to the FortiBridge CLI using Telnet Welcome FortiBridge-1000 #Changing the management IP address Adding an administrator passwordTo add an administrator password To change the management IP addressTo change DNS server IP addresses Changing DNS server IP addressesAdding static routes To add static routesAllowing management access to the EXT 1 interface Adding administrator accountsChanging the system time and date Resetting to the factory default configuration Installing FortiBridge unit firmwareTo reset to factory defaults from the FortiBridge CLI Execute restore image FBG1000-v10-build010-FORTINET.out To upgrade to a new firmware versionExecute restore image namestr tftpip Upgrading to a new firmware versionReverting to a previous firmware version To revert to a previous firmware versionHit any key to stop autoboot Installing firmware from a system rebootTo install firmware from a system reboot Enter Tftp server addressEnter firmware image file image.out Get system statusConfiguration and operating procedures Example network settingsConfiguring FortiBridge probes Configuring FortiBridge probesProbe settings To configure probe settingsTo enable and configure FortiBridge probes Config probe probelist ping set status enable EndEnabling probes To verify that probes are functioning Config probe probelist Imap set status enable EndVerifying that probes are functioning Go to System Status SessionConfiguring FortiBridge alerts Tuning the failure threshold and probe intervalFortiBridge alert email To configure alert emailConfig alertemail setting set server mail.myorg.com End FortiBridge syslogTo configure FortiBridge syslog Config log syslogd setting set server EndFortiBridge Snmp Config system snmp community edit Set name snmp1 End Recovering from a FortiGate failureTo add and enable an Snmp community To resume normal operation from bypass modeExecute switch-mode Manually switching between FortiBridge operating modesBacking up and restoring the FortiBridge configuration To back up the FortiBridge configurationBacking up and restoring the FortiBridge configuration Backing up and restoring the FortiBridge configuration To use the CLI to configure SSH or Telnet access Connecting to the FortiBridge CLI using SSH or TelnetSetting administrative access for SSH or Telnet CLI basicsSet allowaccess ping telnet ssh Other access methodsConnecting to the FortiBridge CLI using SSH Get system interface namestrTo connect to the CLI using SSH Connecting to the FortiBridge CLI using SSH or Telnet Config CLI commands Alertemail setting Command syntax patternExamples Related Commands Log syslogd setting ExampleGet probe probelist http Probe probelist ping http ftp pop3 smtp imapGet probe probelist Show probe probelistProbe setting SyslogSystem accprofile Rw wGet system accprofile Get system accprofile policyprofileShow system accprofile System admin Password passwordstrGet system admin Get system admin newadminShow system admin Get system console Config system console set EndSystem console Show system consoleSystem dns Get system dnsShow system dns Get system status System failclose FailbypassSystem failclose System global MinutesintegerGet system global Show system globalSystem interface internal external Get system interface internalShow system interface internal Config system manageip Set ip 192.168.2.80 255.255.255.0 end System manageipSystem route DistanceintegerConfig hosts System snmp communityGet system snmp community Show system snmp communityExecute CLI commands Execute backup config filenamestr tftp-serveripv4 BackupCommand syntax Execute backup config fbdg.cfgDate Execute date datestr datestr has the form mm/dd/yyyy, whereExecute date 09/17/2004 Factoryreset Execute factoryresetPing Execute ping addressipv4 host-namestrReboot Execute rebootRestore Execute restore config backupconfigSwitch-mode Time Execute time timestrTime Index 09-30000-0163-20061109 Snmp SSH