The FortiGate-5005-DIST security system

Basic FortiGate security system configuration

The FortiGate-5005-DIST security system

The FortiGate-5005-DIST security system is very similar to a single FortiGate unit, but with much higher capacity and with support for failover protection and scalability. The FortiGate-5005-DIST security system consists of a FortiGate-5050 or FortiGate-5140 chassis with one or two Input/Output or I/O boards (FortiController-5208 boards) and one or more worker boards (FortiGate-5005FA2 boards running in DIST mode). The I/O boards provide 10-gigabit and 1-gigabit network connections and distribute traffic to the worker boards. The worker boards provide FortiGate security system functions including firewall, VPN, IPS, antivirus, antispam, and so on.

The following topics are included in this section:

Basic FortiGate security system configuration

FortiController-5208 I/O boards

FortiGate-5005FA2 worker boards

FortiGate-5005-DIST security system chassis

FortiGate-5005-DIST interface names

Basic FortiGate security system configuration

A basic FortiGate security system consists of a single FortiController-5208 board and four FortiGate-5005 boards installed in a FortiGate-5050 or FortiGate-5140 chassis (see Figure 29 on page 68). This system can be installed in NAT/Route mode between the Internet and a private network. In this configuration, the FortiGate-5005-DIST security system can provide FortiGate services to 10 gigabit traffic passing between the private network and the Internet.

FortiGate-5000 Series Introduction

 

01-30000-83466-20090108

67

Page 67
Image 67
Fortinet FortiGate-5000 manual FortiGate-5005-DIST security system, Basic FortiGate security system configuration