Default firewall configuration

Firewall configuration

 

 

This chapter describes:

Default firewall configuration

Adding firewall policies

Configuring policy lists

Addresses

Services

Schedules

Virtual IPs

IP pools

IP/MAC binding

Content profiles

Default firewall configuration

By default, the users on your internal network can connect through the FortiGate unit to the Internet. The firewall blocks all other connections. The firewall is configured with a default policy that matches any connection request received from the internal network and instructs the firewall to forward the connection to the Internet.

The default policy also applies virus scanning to all HTTP, FTP, SMTP, POP3, and IMAP traffic matched by the policy. The policy applies virus scanning because the Antivirus & Web Filter option is selected and the Content profile is set to Scan. For more information about content profiles, see “Content profiles” on page 218.

Figure 39: Default firewall policy

Interfaces

VLAN subinterfaces

Zones

Addresses

Services

Schedules

Content profiles

186

Fortinet Inc.

Page 186
Image 186
Fortinet FortiGate-800 manual Default firewall configuration, 186