网络配置

在您的内部网络中提DHCP 服务

 

 

 

 

表 2: 设置 system dhcpserver 命令语( 续 )

 

 

 

 

关键词

说明

 

 

 

 

exclusionrange {< 起点

最多可以输入 4 个 IP 地址排除范围。输入排除范围的起点 IP

 

ip1-终点ip1> none}

地址和终点 IP 地址,这些 IP 地址不能分配给 DHCP 客户端。使

 

[{< 起点 ip2-终点ip2>

用连词符 -分隔同一范围内的 IP 地址。不要使用空格。空

 

none}] [{< 起点 ip3-终点

格用来分隔不同的范围。默认路由、排除范围、IP 范围和保留

 

ip3> none}] [{< 起点

IP 地址必须和内部接口在同一子网内。

 

ip4-终点ip4> none}]

要修改排除范围,您必须重新定义全部的排除范围。要删除全

 

 

部排除范围,将第一个排除范围替换为 none。

 

 

 

 

iprange < 起点 ip-终点

FortiGate 设备用来分配给 DHCP 客户端的 IP 地址的范围的起点

 

ip>

IP 地址和终点 IP 地址。默认路由、排除范围、IP 范围和保留

 

 

IP 地址必须和内部接口在同一子网内。

 

 

 

 

leaseduration

以秒为单位的时间间隔,过期后 DHCP 客户端必须向 DHCP 服务

 

<lease_int>

器申请一个新的地址。有效期的范围是 300 秒到 8000000 秒。

 

netmask < 掩码 >

FortiGate DHCP 服务器分配给 DHCP 客户端的网络掩码。

 

reserve < 保留 ip> < 保留

保留一个 IP 地址。FortiGate DHCP 服务器总是将这个 IP 地址

 

mac> [< 名称字符串 >

分配给使用特定的 MAC 地址的设备。可以选择指定 IP 和 MAC 地

 

none]

址对的名称。保留 IP 地址不能分配给其他的设备。您一次只能

 

 

添加一个 IP 地址或 MAC 地址。默认路由、排除范围、IP 范围和

 

 

保留 IP 地址必须和内部接口在同一子网内。

 

 

 

 

status

启用或禁用您的内部网络的 FortiGate DHCP 服务器。

 

{enable disable}

 

 

winsserver {<服务器1IP>

输入一个或两个分配给 DHCP 客户端的 WINS 服务器 IP 地址。

 

none} [{<服务器2IP>

 

 

none}]

 

FortiGate-500 安装和配置指南

123

Page 135
Image 135
Fortinet 500 manual 123, 关键词

500 specifications

Fortinet 500 is a next-generation firewall (NGFW) that is part of Fortinet's acclaimed FortiGate family, designed to provide advanced security for medium to large enterprises. This appliance is known for its high performance, flexibility, and ability to protect networks from a variety of cyber threats through its robust features and technologies.

One of the main features of the Fortinet 500 is its integrated security capabilities. It combines multiple security functions into a single device, allowing organizations to manage everything from intrusion prevention and antivirus to web filtering and application control. This integration leads to simplified management and increased efficiency, as users can address multiple security needs without deploying multiple devices.

The Fortinet 500 runs on the FortiOS operating system, which is known for its simplicity and user-friendliness. FortiOS provides a centralized management interface that allows for the easy configuration and monitoring of security policies across the entire network. Additionally, the Fortinet management tools, such as FortiManager and FortiAnalyzer, enable detailed insights and reporting capabilities, helping organizations stay compliant with their security mandates.

Another characteristic that sets Fortinet 500 apart is its advanced threat intelligence, powered by the FortiGuard Labs. This global threat intelligence system continuously updates the firewall with the latest threat signatures and attack vectors, ensuring that organizations stay ahead of emerging threats. The firewall also employs machine learning and artificial intelligence to detect and mitigate sophisticated attacks in real-time.

Performance is crucial in any security appliance, and the Fortinet 500 does not disappoint. With hardware acceleration and purpose-built security processors, it delivers high throughput levels, enabling organizations to maintain productivity without sacrificing security. This level of performance is particularly beneficial in environments with heavy traffic and bandwidth demands.

In addition to these core features, the Fortinet 500 supports seamless integration with other security solutions within the Fortinet Security Fabric. This comprehensive approach allows for greater visibility and control over the entire security posture of an organization.

Overall, the Fortinet 500 is a powerful NGFW that offers a blend of advanced security features, ease of management, top-notch performance, and robust threat intelligence. Its ability to adapt to the ever-evolving landscape of cybersecurity makes it a valuable asset for businesses seeking to safeguard their digital assets and ensure seamless network operation.