General configuration steps

Example FortiGate Voice branch office configuration

Figure 3: Example Branch Office network configuration

Branch Office

 

 

 

 

 

Remote Users

Internal network

 

 

 

 

 

 

 

 

 

 

with FortiFones or

PCs with SIP soft phones

 

 

 

 

 

 

 

 

 

 

SIP soft phones

and FortiFones

 

 

 

 

 

 

 

 

 

 

Extension range

Subnet: 172.20.120.0

 

 

 

 

 

 

 

 

 

 

6000 - 6999

Extension Range 6000 - 6999

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

Remote

PC

 

 

PSTN

 

 

FortiGate unit

 

 

 

 

in NAT mode

 

 

a/b - wire

 

 

 

external

 

 

 

 

192.168.40.10

FortiFone

 

 

 

 

 

 

fxo1

 

 

 

 

 

 

 

 

 

PC

SIP

 

SIP Trunking

 

SIP Trunking

 

LAN

internal

wan1

WAN

Internet

WAN

 

 

FortiFone

 

172.20.120.10

192.168.10.10

 

Head Office

 

FortiGate Voice-80C

 

 

 

 

 

 

IP: 192.168.30.10

PC

 

 

 

 

 

Extention Range

 

 

 

 

 

2000 - 2999

 

 

 

 

 

 

FortiFone

NAT device

VoIP Provider

IP: 192.168.20.10

 

behind a NAT

 

 

device

 

 

This section describes:

General configuration steps

Connecting the FortiGate Voice unit

Configuring basic FortiGate Voice network and UTM settings

Configuring network settings for the devices on the Internal network

Configuring the FortiGate Voice PSTN and PBX settings

Configuring the FortiFones on the internal network

Adding extensions and configuring FortiFones for users behind a NAT device

General configuration steps

1Connect the FortiGate Voice unit to the Internet, the internal network and the PSTN.

2Configure FortiGate Voice unit network and UTM settings.

The network configuration includes enabling the SIP Traffic option on the internal and wan1 interfaces. You must enable SIP traffic on these interfaces to accept and process SIP calls. No other special network configuration, firewall policies, or routing is required for the FortiGate Voice to accept and process SIP calls.

Note: You do not have to add SIP firewall policies to enable SIP traffic for the FortiGate Voice unit to function as a PBX. Also, with PBX functionality enabled, you cannot apply FortiGate SIP application control features to SIP traffic received by FortiGate Voice interfaces for which you have enabled the SIP Traffic option.

This example also describes how to configure the FortiGate Voice as a DHCP server and DNS server for the branch office internal network. As a DHCP server the FortiGate Voice can supply network configuration settings for the PCs and FortiFones on the internal network.

3Configure network settings for the PCs on the Internal network.

4Configuring the FortiGate Voice PSTN and PBX settings.

FortiGate Voice Version 4.0 MR1 Administration Guide

1801-410-112851-20100601http://docs.fortinet.com/ Feedback

Page 18
Image 18
Fortinet 4.0 MR1 manual General configuration steps, Example Branch Office network configuration