修改 FortiGate 固件

 

系统状态

 

 

 

10

使用

第 99 页 手工更新病毒防护定义和攻击定义中描述的步骤更新病毒防护

 

定义和攻击定义,或从 CLI 输入

execute updatecenter updatenow

11要确认病毒防护定义和攻击定义是否已经被更新,输入以下命令显示病毒防护引擎、 病毒和攻击定义的版本,合同有效期和最新更新信息。

get system objver

使用 CLI 新启动系统安装

这一方法可以安装给定的固件映像并把 FortiGate 恢复到默认设置。您可以使用这 一方法把固件升级到一个新版本,或者恢复一个固件的旧版本,或者重新安装当前版 本的固件。

注意:在不同的版本的 FortiGate BIOS 中这一操作有一些细微的不同。这些不同在受到影响的 操作步骤中有相应的说明。您使用串行通讯线缆连接到 FortiGate 串行通讯接口访问 CLI 的时 候,您的 FortiGate 设备会在重新启动过程中显示所运行的 BIOS 版本。

要执行这一操作您需要:

·使用一条串行通讯线缆连接到 FortiGate 串行通讯接口访问 CLI。

·安装一个 TFTP 服务器,并使内部网络接口可以连接到此服务器上。TFTP 服务器必须 和 FortiGate 的内部网络接口在同一子网内。

在执行这一操作之前您可以:

·备份 FortiGate 设备的配置,使用 第 88 页 备份系统设备中的步骤。 ·备份 NIDS 用户定义的特征,请见 FortiGate NIDS 指南。 ·备份网页内容和电子邮件过滤列表,请见 FortiGate 内容保护指南。

如果您要恢复到一个旧版本的 FortiOS (例如,从 FortiOS v2.50 恢复到 v2.36),您可能无法恢复您的配置备份文件中保存的从前的配置。

注意:安装固件将使用您所安装的固件中包含的病毒防护定义和攻击定义替换您当前的病毒防护 定义和攻击定义。当您安装一个新的固件时,使用 第 99 页 手工更新病毒防护定义和攻击 定义中的步骤确保病毒防护定义和攻击定义是最新的。

从系统新启动中安装

1 使用一根零调制解调器电缆和 FortiGate 控制端口连接到 CLI。

2 确认 TFTP 服务器工作正常。

3 将新版本的固件映像文件拷贝到您的 TFTP 服务器的根目录下。

4 确认 FortiGate 的内部接口和 TFTP 服务器连接到同一网络上。

5 确认您可以从 FortiGate 连接到 TFTP 服务器上。具体方法是使用以下命令 ping 运行 TFPT 服务的电脑。例如,如果 TFTP 服务器的 IP 地址是 192.168.1.168:

execute ping 192.168.1.168

80

美国飞塔有限公司

Page 92
Image 92
Fortinet 500 manual 使用 Cli 重新启动系统安装固件, 99 页 手工更新病毒防护定义和攻击定义 中描述的步骤更新病毒防护, 定义和攻击定义,或从 Cli 输入, 从系统重新启动中安装固件

500 specifications

Fortinet 500 is a next-generation firewall (NGFW) that is part of Fortinet's acclaimed FortiGate family, designed to provide advanced security for medium to large enterprises. This appliance is known for its high performance, flexibility, and ability to protect networks from a variety of cyber threats through its robust features and technologies.

One of the main features of the Fortinet 500 is its integrated security capabilities. It combines multiple security functions into a single device, allowing organizations to manage everything from intrusion prevention and antivirus to web filtering and application control. This integration leads to simplified management and increased efficiency, as users can address multiple security needs without deploying multiple devices.

The Fortinet 500 runs on the FortiOS operating system, which is known for its simplicity and user-friendliness. FortiOS provides a centralized management interface that allows for the easy configuration and monitoring of security policies across the entire network. Additionally, the Fortinet management tools, such as FortiManager and FortiAnalyzer, enable detailed insights and reporting capabilities, helping organizations stay compliant with their security mandates.

Another characteristic that sets Fortinet 500 apart is its advanced threat intelligence, powered by the FortiGuard Labs. This global threat intelligence system continuously updates the firewall with the latest threat signatures and attack vectors, ensuring that organizations stay ahead of emerging threats. The firewall also employs machine learning and artificial intelligence to detect and mitigate sophisticated attacks in real-time.

Performance is crucial in any security appliance, and the Fortinet 500 does not disappoint. With hardware acceleration and purpose-built security processors, it delivers high throughput levels, enabling organizations to maintain productivity without sacrificing security. This level of performance is particularly beneficial in environments with heavy traffic and bandwidth demands.

In addition to these core features, the Fortinet 500 supports seamless integration with other security solutions within the Fortinet Security Fabric. This comprehensive approach allows for greater visibility and control over the entire security posture of an organization.

Overall, the Fortinet 500 is a powerful NGFW that offers a blend of advanced security features, ease of management, top-notch performance, and robust threat intelligence. Its ability to adapt to the ever-evolving landscape of cybersecurity makes it a valuable asset for businesses seeking to safeguard their digital assets and ensure seamless network operation.