Fortinet MR8 manual High availability installation, Configuring FortiGate units for HA operation

Page 47

FortiGate-60 Installation Guide Version 2.80 MR8

High availability installation

This chapter describes how to install two or more FortiGate units in an HA cluster. HA installation involves three basic steps:

Configuring FortiGate units for HA operation

Connecting the cluster to your networks

Installing and configuring the cluster

For information about HA, see the FortiGate Administration Guide and the FortiOS

High Availability technical note.

Priorities of heartbeat device and monitor priorities

The procedures in this chapter do not include steps for changing the priorities of heartbeat devices or for configuring monitor priorities settings. Both of these HA settings should be configured after the cluster is up and running.

Configuring FortiGate units for HA operation

A FortiGate HA cluster consists of two or more FortiGate units with the same HA configuration. This section describes how to configure each of the FortiGate units to be added to a cluster for HA operation. The procedures are the same for active-active and active-passive HA.

High availability configuration settings

Configuring FortiGate units for HA using the web-based manager

Configuring FortiGate units for HA using the CLI

High availability configuration settings

Use the following table to select the HA configuration settings for the FortiGate units in the HA cluster.

FortiGate-60 Installation Guide

01-28008-0018-20050128

47

Image 47
Contents January 01-28008-0018-20050128 Installation GuideRegulatory Compliance TrademarksTable of Contents Index Introduction Secure installation, configuration, and managementWeb-based manager Command line interfaceDocument conventions Setup wizardFortiGate documentation FortiGate Installation GuideFortiManager documentation Related documentationFortinet Knowledge Center Comments on Fortinet technical documentationFortiLog documentation Customer service and technical supportFortiMail documentation Customer service and technical support Customer service and technical support Getting started Mounting Package contentsTo power on the FortiGate unit Turning the FortiGate unit power on and offPower requirements Environmental specificationsTo connect to the web-based manager Connecting to the web-based managerStop bits Flow control Connecting to the command line interface CLITo connect to the CLI Bits per second 9600 Data bits ParityGo to System Network DNS Quick installation using factory defaultsFactory default Dhcp server configuration Factory default FortiGate configuration settingsFactory default NAT/Route mode network configuration Management IP Factory default Transparent mode network configurationFactory default firewall configuration Administrative accessScan Factory default protection profilesStrict NAT/Route mode Planning the FortiGate configurationExample NAT/Route mode network configuration NAT/Route mode with multiple external network connectionsExample NAT/Route multiple internet connection configuration Transparent modeNext steps Configuration optionsWeb-based manager and setup wizard Preparing to configure the FortiGate unit in NAT/Route mode NAT/Route mode installationPPPoE settings User name Password Using the web-based managerDhcp or PPPoE configuration To add a default route Configuring basic settingsTo configure interfaces Go to System Network Interface To configure DNS server settings Go to System Network DNSTo configure interfaces Using the command line interfaceConfiguring the FortiGate unit to operate in NAT/Route mode To add/change the administrator passwordGet system interface ExampleTo configure DNS server settings Using the setup wizardInternal servers Setup wizard settings PasswordExternal Interface Dhcp serverSetup wizard settings Antivirus Connecting the FortiGate unit to the networksStarting the setup wizard FortiGate-60 FortiGate-60 NAT/Route mode connectionsConfiguring the Modem interface Configuring the networksTo register the FortiGate unit Go to System Config TimeTo configure virus, attack, and spam definition updates To set the date and timeGo to System Maintenance Update Center Preparing to configure Transparent mode Transparent mode installationManagement IP To change the Management IP Go to System Network ManagementTo change to Transparent mode using the CLI Reconnecting to the web-based managerTo configure the default gateway To configure the management IP addressTo start the setup wizard Internal Connecting the FortiGate unit to your networkTo register your FortiGate unit Go to System Maintenance Update Center Priorities of heartbeat device and monitor priorities High availability installationConfiguring FortiGate units for HA operation High availability configuration settingsGroup ID MAC Address To change the FortiGate unit host name Config system global Set hostname namestr end Configuring FortiGate units for HA using the CLITo configure the FortiGate unit for HA operation Connecting the cluster to your networksTo connect the cluster HA network configurationInstalling and configuring the cluster Installing and configuring the cluster Redundant mode configuration Configuring the modem interfaceSelecting a modem mode To operate in standalone mode Go to System Network Modem Standalone mode configurationRedundant for Configuring modem settingsMode Auto-dialTo connect to a dialup account Go to System Network Modem Connecting and disconnecting the modem in Standalone modeTo configure modem settings Go to System Network Modem ISP Defining a Ping ServerDead gateway detection To disconnect the modemAdding firewall policies for modem connections CLI IndexIndex