系统状态

修改 FortiGate 固件

 

 

2 使用 admin 管理员帐号登录到基于 Web 的管理程序。

3 进入 系统 > 状态

4 单击 固件升级

5 输入固件升级文件的文件名,或者单击 浏览 然后定位那个文件。

6 单击确定。

FortiGate 设备将上载固件映像文件,升级到新的固件版本,重新启动,然后显示 FortiGate 登录界面。这一步骤需要数分钟时间。

7 登录到基于 Web 的管理程序。

8 进入 系统 > 状态检查固件的版本,确认固件的升级版本已经成功地安装了。

9 使用 第 99 页 手工更新病毒防护定义和攻击定义中的操作更新病毒防护定义 和攻击定义。

使用 CLI 升级固

必须有一个可以从 FortiGate 连接到的 TFTP 服务器才能按照下述步骤升级。

注意:安装固件将使用您所安装的固件中包含的病毒防护定义和攻击定义替换您当前的病毒防护 定义和攻击定义。当您安装一个新的固件时,使用 第 99 页 手工更新病毒防护定义和攻击 定义中的步骤保病毒防护定义和攻击定义是最新的。您可以使用 CLI 命令 execute

updatecenter updatenow 更新病毒防护定义和攻击定义。

1 确保 TFTP 正在运行。

2 将新的固件映像文件拷贝到 TFPT 服务器的根目录下。

3 用 admin 帐号登录到 FortiGate。

4 确保 FortiGate 可以连接到 TFTP 服务器。

确认您可以从 FortiGate 连接到 TFTP 服务器上。具体方法是使用以下命令 ping 运 行 TFPT 服务的电脑。例如,如果 TFTP 服务器的 IP 地址是 192.168.1.168:

execute ping 192.168.1.168

5 输入下述命令将固件映像文件从 TFPT 服务器拷贝到 FortiGate 上: execute restore image < 名称 _ 字符串 > <tftp_ip>

<名称_ 字符串> 是TFTP 服务器上的固件映像文件的文件名, <tftp_ip> 是TFTP 服务器的 IP 地址。例如,如果固件映像文件的文件名是 FGT-60-v236-build068- FORTINET.out ,TFTP 服务器的 IP 地址为 192.168.1.168,输入:

execute restore image FGT-60-v236-build068-FORTINET.out 192.168.1.168

FortiGate 上载固件映像文件,升级到新版本的固件,重新启动。这一过程需要一 些时间。

6 重新连接到 CLI。

7 要确认新版本的固件已经加载了,输入:

get system status

8 使用 第 99 页 手工更新病毒防护定义和攻击定义中的操作更新病毒防护定义 和攻击定义,或者使用 CLI,输入

execute updatecenter updatenow

FortiGate-500 安装和配置指南

77

Page 89
Image 89
Fortinet 500 manual 使用 Cli 升级固件, 进入 系统 状态。 单击 固件升级 。, 使用 第 99 页 手工更新病毒防护定义和攻击定义 中的操作更新病毒防护定义 和攻击定义。

500 specifications

Fortinet 500 is a next-generation firewall (NGFW) that is part of Fortinet's acclaimed FortiGate family, designed to provide advanced security for medium to large enterprises. This appliance is known for its high performance, flexibility, and ability to protect networks from a variety of cyber threats through its robust features and technologies.

One of the main features of the Fortinet 500 is its integrated security capabilities. It combines multiple security functions into a single device, allowing organizations to manage everything from intrusion prevention and antivirus to web filtering and application control. This integration leads to simplified management and increased efficiency, as users can address multiple security needs without deploying multiple devices.

The Fortinet 500 runs on the FortiOS operating system, which is known for its simplicity and user-friendliness. FortiOS provides a centralized management interface that allows for the easy configuration and monitoring of security policies across the entire network. Additionally, the Fortinet management tools, such as FortiManager and FortiAnalyzer, enable detailed insights and reporting capabilities, helping organizations stay compliant with their security mandates.

Another characteristic that sets Fortinet 500 apart is its advanced threat intelligence, powered by the FortiGuard Labs. This global threat intelligence system continuously updates the firewall with the latest threat signatures and attack vectors, ensuring that organizations stay ahead of emerging threats. The firewall also employs machine learning and artificial intelligence to detect and mitigate sophisticated attacks in real-time.

Performance is crucial in any security appliance, and the Fortinet 500 does not disappoint. With hardware acceleration and purpose-built security processors, it delivers high throughput levels, enabling organizations to maintain productivity without sacrificing security. This level of performance is particularly beneficial in environments with heavy traffic and bandwidth demands.

In addition to these core features, the Fortinet 500 supports seamless integration with other security solutions within the Fortinet Security Fabric. This comprehensive approach allows for greater visibility and control over the entire security posture of an organization.

Overall, the Fortinet 500 is a powerful NGFW that offers a blend of advanced security features, ease of management, top-notch performance, and robust threat intelligence. Its ability to adapt to the ever-evolving landscape of cybersecurity makes it a valuable asset for businesses seeking to safeguard their digital assets and ensure seamless network operation.