Fortinet MR8 manual Installing and configuring the cluster

Page 53

High availability installation

Installing and configuring the cluster

 

 

2Power on all the FortiGate units in the cluster.

As the units start, they negotiate to choose the primary cluster unit and the subordinate units. This negotiation occurs with no user intervention and normally just takes a few seconds.

Installing and configuring the cluster

When negotiation is complete the you can configure the cluster as if it was a single

FortiGate unit.

If you are installing a NAT/Route mode cluster, use the information in “NAT/Route mode installation” on page 27 to install the cluster on your network

If you are installing a Transparent mode cluster, use the information in “Transparent mode installation” on page 39 to install the cluster on your network.

The configurations of all of the FortiGate units in the cluster are synchronized so that the FortiGate units can function as a cluster. Because of this synchronization, you configure and manage the HA cluster instead of managing the individual FortiGate units in the cluster. You can configure and manage the cluster by connecting to the cluster web-based manager using any cluster interface configured for HTTPS administrative access. You can also configure and manage the cluster by connecting to the CLI using any cluster interface configured for SSH administrative access.

When you connect to the cluster, you are actually connecting to the primary cluster unit. The cluster automatically synchronizes all configuration changes to the subordinate units in the cluster as the changes are made.

The only configuration settings that are not synchronized are the HA configuration (except for the interface heartbeat device and monitoring configuration) and the FortiGate host name.

For more information about configuring a cluster, see the FortiGate Administration Guide.

FortiGate-60 Installation Guide

01-28008-0018-20050128

53

Image 53
Contents January 01-28008-0018-20050128 Installation GuideRegulatory Compliance TrademarksTable of Contents Index Introduction Secure installation, configuration, and managementWeb-based manager Command line interfaceDocument conventions Setup wizardFortiGate documentation FortiGate Installation GuideFortinet Knowledge Center Related documentationComments on Fortinet technical documentation FortiManager documentationFortiLog documentation Customer service and technical supportFortiMail documentation Customer service and technical support Customer service and technical support Getting started Mounting Package contentsPower requirements Turning the FortiGate unit power on and offEnvironmental specifications To power on the FortiGate unitTo connect to the web-based manager Connecting to the web-based managerTo connect to the CLI Connecting to the command line interface CLIBits per second 9600 Data bits Parity Stop bits Flow controlGo to System Network DNS Quick installation using factory defaultsFactory default Dhcp server configuration Factory default FortiGate configuration settingsFactory default NAT/Route mode network configuration Factory default firewall configuration Factory default Transparent mode network configurationAdministrative access Management IPScan Factory default protection profilesStrict NAT/Route mode Planning the FortiGate configurationExample NAT/Route mode network configuration NAT/Route mode with multiple external network connectionsExample NAT/Route multiple internet connection configuration Transparent modeNext steps Configuration optionsWeb-based manager and setup wizard Preparing to configure the FortiGate unit in NAT/Route mode NAT/Route mode installationPPPoE settings User name Password Using the web-based managerDhcp or PPPoE configuration To configure interfaces Go to System Network Interface Configuring basic settingsTo configure DNS server settings Go to System Network DNS To add a default routeConfiguring the FortiGate unit to operate in NAT/Route mode Using the command line interfaceTo add/change the administrator password To configure interfacesGet system interface ExampleTo configure DNS server settings Using the setup wizardExternal Interface Setup wizard settings PasswordDhcp server Internal serversSetup wizard settings Antivirus Connecting the FortiGate unit to the networksStarting the setup wizard FortiGate-60 FortiGate-60 NAT/Route mode connectionsConfiguring the Modem interface Configuring the networksTo configure virus, attack, and spam definition updates Go to System Config TimeTo set the date and time To register the FortiGate unitGo to System Maintenance Update Center Preparing to configure Transparent mode Transparent mode installationManagement IP To change the Management IP Go to System Network ManagementTo change to Transparent mode using the CLI Reconnecting to the web-based managerTo configure the default gateway To configure the management IP addressTo start the setup wizard Internal Connecting the FortiGate unit to your networkTo register your FortiGate unit Go to System Maintenance Update Center Configuring FortiGate units for HA operation High availability installationHigh availability configuration settings Priorities of heartbeat device and monitor prioritiesGroup ID MAC Address To change the FortiGate unit host name Config system global Set hostname namestr end Configuring FortiGate units for HA using the CLITo configure the FortiGate unit for HA operation Connecting the cluster to your networksTo connect the cluster HA network configurationInstalling and configuring the cluster Installing and configuring the cluster Redundant mode configuration Configuring the modem interfaceSelecting a modem mode To operate in standalone mode Go to System Network Modem Standalone mode configurationMode Configuring modem settingsAuto-dial Redundant forTo connect to a dialup account Go to System Network Modem Connecting and disconnecting the modem in Standalone modeTo configure modem settings Go to System Network Modem Dead gateway detection Defining a Ping ServerTo disconnect the modem ISPAdding firewall policies for modem connections CLI IndexIndex