Fortinet MR8 manual FortiGate-60 NAT/Route mode connections

Page 35

NAT/Route mode installation

Connecting the FortiGate unit to the network(s)

 

 

One DMZ port for connecting to a DMZ network.

Modem is the interface for connecting an external modem to the FortiGate-60. See “Configuring the Modem interface” on page 36

Note: You can also connect the WAN1 and WAN2 interfaces to different Internet connections to provide a redundant connection to the Internet.

To connect the FortiGate unit:

1Connect the Internal interface connectors to PCs and other network devices in your internal network.

The Internal interface functions as a switch, allowing up to four devices to be connected to the internal network and the internal interface.

2Connect the WAN1 interface to the Internet.

Connect to the public switch or router provided by your Internet Service Provider. If you are a DSL or cable subscriber, connect the WAN1 interface to the internal or LAN connection of your DSL or cable modem.

3Optionally connect the WAN2 interface to the Internet.

Connect to the public switch or router, usually provided by a different Internet Service Provider. If you are a DSL or cable subscriber, connect the WAN2 interface to the internal or LAN connection of your DSL or cable modem.

4Optionally, connect the DMZ interface to your DMZ network.

You can use a DMZ network to provide access from the Internet to a web server or other server without installing the servers on your internal network.

Figure 10: FortiGate-60 NAT/Route mode connections

DMZ Network

Internal Network

Web Server

Mail Server

Wireless Network

D M Z

 

 

Internal

FortiGate-60

 

 

 

INTERNAL

 

 

 

 

PWR

STATUS

1

2

3

4

DMZ

WAN1

WAN2

 

 

LINK 100

LINK 100

LINK 100

LINK 100

LINK 100

LINK 100

LINK 100

WAN1

WAN2

T1

Broadband (cable or DSL)

Internet

FortiGate-60 Installation Guide

01-28008-0018-20050128

35

Image 35
Contents January 01-28008-0018-20050128 Installation GuideRegulatory Compliance TrademarksTable of Contents Index Introduction Secure installation, configuration, and managementWeb-based manager Command line interfaceDocument conventions Setup wizardFortiGate documentation FortiGate Installation GuideFortiManager documentation Related documentationFortinet Knowledge Center Comments on Fortinet technical documentationFortiLog documentation Customer service and technical supportFortiMail documentation Customer service and technical support Customer service and technical support Getting started Mounting Package contentsTo power on the FortiGate unit Turning the FortiGate unit power on and offPower requirements Environmental specificationsTo connect to the web-based manager Connecting to the web-based managerStop bits Flow control Connecting to the command line interface CLITo connect to the CLI Bits per second 9600 Data bits ParityGo to System Network DNS Quick installation using factory defaultsFactory default Dhcp server configuration Factory default FortiGate configuration settingsFactory default NAT/Route mode network configuration Management IP Factory default Transparent mode network configurationFactory default firewall configuration Administrative accessScan Factory default protection profilesStrict NAT/Route mode Planning the FortiGate configurationExample NAT/Route mode network configuration NAT/Route mode with multiple external network connectionsExample NAT/Route multiple internet connection configuration Transparent modeNext steps Configuration optionsWeb-based manager and setup wizard Preparing to configure the FortiGate unit in NAT/Route mode NAT/Route mode installationPPPoE settings User name Password Using the web-based managerDhcp or PPPoE configuration To add a default route Configuring basic settingsTo configure interfaces Go to System Network Interface To configure DNS server settings Go to System Network DNSTo configure interfaces Using the command line interfaceConfiguring the FortiGate unit to operate in NAT/Route mode To add/change the administrator passwordGet system interface ExampleTo configure DNS server settings Using the setup wizardInternal servers Setup wizard settings PasswordExternal Interface Dhcp serverSetup wizard settings Antivirus Connecting the FortiGate unit to the networksStarting the setup wizard FortiGate-60 FortiGate-60 NAT/Route mode connectionsConfiguring the Modem interface Configuring the networksTo register the FortiGate unit Go to System Config TimeTo configure virus, attack, and spam definition updates To set the date and timeGo to System Maintenance Update Center Preparing to configure Transparent mode Transparent mode installationManagement IP To change the Management IP Go to System Network ManagementTo change to Transparent mode using the CLI Reconnecting to the web-based managerTo configure the default gateway To configure the management IP addressTo start the setup wizard Internal Connecting the FortiGate unit to your networkTo register your FortiGate unit Go to System Maintenance Update Center Priorities of heartbeat device and monitor priorities High availability installationConfiguring FortiGate units for HA operation High availability configuration settingsGroup ID MAC Address To change the FortiGate unit host name Config system global Set hostname namestr end Configuring FortiGate units for HA using the CLITo configure the FortiGate unit for HA operation Connecting the cluster to your networksTo connect the cluster HA network configurationInstalling and configuring the cluster Installing and configuring the cluster Redundant mode configuration Configuring the modem interfaceSelecting a modem mode To operate in standalone mode Go to System Network Modem Standalone mode configurationRedundant for Configuring modem settingsMode Auto-dialTo connect to a dialup account Go to System Network Modem Connecting and disconnecting the modem in Standalone modeTo configure modem settings Go to System Network Modem ISP Defining a Ping ServerDead gateway detection To disconnect the modemAdding firewall policies for modem connections CLI IndexIndex