Next steps |
|
|
|
|
|
|
|
|
|
| Getting started | |
|
|
|
|
|
|
|
|
|
|
|
|
|
Table 9: FortiGate maximum values matrix |
|
|
|
|
|
|
|
|
| |||
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
|
| FortiGate model |
|
|
|
|
| |
| 50 | 60 | 100 | 200 | 300 | 400 | 500 | 800 | 1000 | 3000 | 3600 | 4000 |
|
|
|
|
|
|
|
|
|
|
|
|
|
IP/MAC binding | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 |
table entries |
|
|
|
|
|
|
|
|
|
|
|
|
Firewall content | 32 | 32 | 32 | 32 | 32 | 32 | 32 | 32 | 32 | 32 | 32 | 32 |
profiles |
|
|
|
|
|
|
|
|
|
|
|
|
User names | 20 | 500 | 1000 | 1000 | 1000 | 1000 | 1000 | 1000 | 1000 | 1000 | 1000 | 1000 |
Radius servers | 6 | 6 | 6 | 6 | 6 | 6 | 6 | 6 | 6 | 6 | 6 | 6 |
|
|
|
|
|
|
|
|
|
|
|
|
|
LDAP servers | 6 | 6 | 6 | 6 | 6 | 6 | 6 | 6 | 6 | 6 | 6 | 6 |
|
|
|
|
|
|
|
|
|
|
|
|
|
User groups | 100 | 100 | 100 | 100 | 100 | 100 | 100 | 100 | 100 | 100 | 100 | 100 |
Total number of | 300 | 300 | 300 | 300 | 300 | 300 | 300 | 300 | 300 | 300 | 300 | 300 |
user group |
|
|
|
|
|
|
|
|
|
|
|
|
members |
|
|
|
|
|
|
|
|
|
|
|
|
IPSec remote | 20 | 50 | 80 | 200 | 1500 | 1500 | 3000 | 3000 | 5000 | 5000 | 5000 | 5000 |
gateways |
|
|
|
|
|
|
|
|
|
|
|
|
(Phase 1) |
|
|
|
|
|
|
|
|
|
|
|
|
IPSec VPN | 20 | 50 | 80 | 200 | 1500 | 1500 | 3000 | 3000 | 5000 | 5000 | 5000 | 5000 |
tunnels (Phase 2) |
|
|
|
|
|
|
|
|
|
|
|
|
IPSec VPN | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 |
concentrators |
|
|
|
|
|
|
|
|
|
|
|
|
PPTP users | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 |
|
|
|
|
|
|
|
|
|
|
|
|
|
L2TP users | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 | 500 |
NIDS | 100 | 100 | 100 | 100 | 100 | 100 | 100 | 100 | 100 | 100 | 100 | 100 |
signatures |
|
|
|
|
|
|
|
|
|
|
|
|
Antivirus file | 56 | 56 | 56 | 56 | 56 | 56 | 56 | 56 | 56 | 56 | 56 | 56 |
block patterns |
|
|
|
|
|
|
|
|
|
|
|
|
Web filter and | Limit varies depending on available system memory. Fortinet recommends limiting total size of web and | |||||||||||
email filter lists | email filter lists to 4 Mbytes or less. If you want to use larger web filter lists, consider using Cerberian web | |||||||||||
| filtering. |
|
|
|
|
|
|
|
|
|
|
|
Log setting traffic | 50 | 50 | 50 | 50 | 50 | 50 | 50 | 50 | 50 | 50 | 50 | 50 |
filter entries |
|
|
|
|
|
|
|
|
|
|
|
|
* Includes the number | of physical interfaces. |
|
|
|
|
|
|
|
|
| ||
|
|
|
|
|
|
|
|
|
|
|
|
|
Next steps
Now that your FortiGate unit is operating, you can proceed to configure it to connect to networks:
•If you are going to operate the FortiGate unit in NAT/Route mode, go to “NAT/Route mode installation” on page 41.
•If you are going to operate the FortiGate unit in Transparent mode, go to “Transparent mode installation” on page 59.
•If you are going to operate two or more FortiGate units in HA mode, go to “High availability” on page 73.
40 | Fortinet Inc. |