网络配置

配置路由

 

 

注意:将路由表中的路由按从特到一般的顺序排列。有关路由表中的路由的排列顺序,请参 阅 配置路由表

添加路由 (透明模式)

以下操作用于 FortiGate 在透明模式运行时添加路由:

1 进入 系统 > 网络 > 路由

2 单击 新建 以添加新的路由。

3 输入这个路由的 目的 IP 地址 子网

4 输入这个路由的 网关的 IP 地址

5 单击 以保存新的路由。

6 如果需要的话重复以上操作添加更多路由。

配置路由表

路由表显示了每个路由的目的地址、网络掩码和添加到路由的网关和设备。路由表 还显示了网关的连接状态。 一个绿色的对勾表示 FortiGate 使用 ping 服务器和网关失 效检测判断可以连接到这个网关,一个红色的叉子意味着 FortiGate 无法建立到这个 网关的连接。兰色问号的意思是这个连接的状态未知。关于更进一步的信息,请见 第 114 页 为接口添加 ping 服务器

FortiGate 选用路由的方式是从上到下地扫描路由表寻找匹配的路由,直到它找到 第一个匹配的路由为止。您必须把路由在路由表中按照专用的路由到通用路由的顺序 排列。默认的路由是通用路由中的最后一个。所以如果添加了默认路由,它应该位于 路由表的最底端的位置。

1 进入 系统 > 网络 > 路由表

2 选择要移动的路由,然后单击 以改变它在路由表中的位置。

3 动到的一栏输入序号,这个序号是您想要这个路由移动到路由表中的位置

序号。然后单击

4 单击 删除 可以从路由表中删除一个路由。

图 11: 路由表

FortiGate-500 安装和配置指南

121

Page 133
Image 133
Fortinet 500 manual 添加路由 (透明模式), 配置路由表, 121, 输入这个路由的 目的 Ip 地址 和 子网掩码 。 输入这个路由的 网关的 Ip 地址。, 进入 系统 网络 路由表 。

500 specifications

Fortinet 500 is a next-generation firewall (NGFW) that is part of Fortinet's acclaimed FortiGate family, designed to provide advanced security for medium to large enterprises. This appliance is known for its high performance, flexibility, and ability to protect networks from a variety of cyber threats through its robust features and technologies.

One of the main features of the Fortinet 500 is its integrated security capabilities. It combines multiple security functions into a single device, allowing organizations to manage everything from intrusion prevention and antivirus to web filtering and application control. This integration leads to simplified management and increased efficiency, as users can address multiple security needs without deploying multiple devices.

The Fortinet 500 runs on the FortiOS operating system, which is known for its simplicity and user-friendliness. FortiOS provides a centralized management interface that allows for the easy configuration and monitoring of security policies across the entire network. Additionally, the Fortinet management tools, such as FortiManager and FortiAnalyzer, enable detailed insights and reporting capabilities, helping organizations stay compliant with their security mandates.

Another characteristic that sets Fortinet 500 apart is its advanced threat intelligence, powered by the FortiGuard Labs. This global threat intelligence system continuously updates the firewall with the latest threat signatures and attack vectors, ensuring that organizations stay ahead of emerging threats. The firewall also employs machine learning and artificial intelligence to detect and mitigate sophisticated attacks in real-time.

Performance is crucial in any security appliance, and the Fortinet 500 does not disappoint. With hardware acceleration and purpose-built security processors, it delivers high throughput levels, enabling organizations to maintain productivity without sacrificing security. This level of performance is particularly beneficial in environments with heavy traffic and bandwidth demands.

In addition to these core features, the Fortinet 500 supports seamless integration with other security solutions within the Fortinet Security Fabric. This comprehensive approach allows for greater visibility and control over the entire security posture of an organization.

Overall, the Fortinet 500 is a powerful NGFW that offers a blend of advanced security features, ease of management, top-notch performance, and robust threat intelligence. Its ability to adapt to the ever-evolving landscape of cybersecurity makes it a valuable asset for businesses seeking to safeguard their digital assets and ensure seamless network operation.