This shows you the differences between two versions of the page.
| Both sides previous revisionPrevious revisionNext revision | Previous revision | ||
| network_stuff:fortinet [2023/10/13 08:29] – jotasandoku | network_stuff:fortinet [2024/11/19 15:23] (current) – jotasandoku | ||
|---|---|---|---|
| Line 4: | Line 4: | ||
| * FortiAuthenticator | * FortiAuthenticator | ||
| * FortiGuard (TODO) | * FortiGuard (TODO) | ||
| - | + | * FortiAnalyzer (logging) | |
| - | + | ||
| - | + | ||
| ---- | ---- | ||
| Deploying FortiX: | Deploying FortiX: | ||
| + | To identify the hardware: | ||
| + | get system status | ||
| + | |||
| * {{: | * {{: | ||
| * console | * console | ||
| Line 31: | Line 31: | ||
| * Zones (TODO) | * Zones (TODO) | ||
| * concept of sd-wan zone | * concept of sd-wan zone | ||
| - | * Firewall policy& | + | * Firewall policy& |
| + | |||
| + | |||
| + | ---- | ||
| + | ==== Security Fabric ==== | ||
| + | * One FG acts as '' | ||
| + | * Logging is required for the security fabric (in forti analyser or cloud) | ||
| + | * '' | ||
| + | |||
| + | diagnose sys csf auzorisation pending-list | ||
| + | |||
| + | ---- | ||
| + | ==== Security Features in the Firewalls explained ==== | ||
| + | - Threat Protection performance is measured with :Firewall, IPS, Application Control and Malware Protection enabled. | ||
| + | - NGFW performance is measured with : Firewall, IPS and Application Control enabled. | ||
| + | - IPS (Enterprise Mix), Application Control, NGFW and Threat Protection are measured with Logging enabled. | ||