User Tools

Site Tools


network_stuff:fortinet

Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revisionPrevious revision
Next revision
Previous revision
network_stuff:fortinet [2023/10/17 15:10] jotasandokunetwork_stuff:fortinet [2024/11/19 15:23] (current) jotasandoku
Line 9: Line 9:
  
 Deploying FortiX: Deploying FortiX:
 +To identify the hardware:
 +  get system status
 +
   * {{:network_stuff:cheatsheet-faz-fmgr-7.0-v1.2.pdf |cheat_sheet}} (with cli commands)   * {{:network_stuff:cheatsheet-faz-fmgr-7.0-v1.2.pdf |cheat_sheet}} (with cli commands)
   * console   * console
Line 32: Line 35:
  
 ---- ----
-CONFIGURATION:  +==== Security Fabric ==== 
-One FG acts as ''root'' and the other as ''downstream''. All F nodes synchronize with tcp-8013+  One FG acts as ''root'' and the other as ''downstream''. All F nodes synchronize with tcp-8013
 +  * Logging is required for the security fabric (in forti analyser or cloud) 
 +  * ''Security Fabric (left menu) > Fabric Connectors'' There we add all devices we want in the fabric + multiple options + also Enable REST-API 
 + 
 +  diagnose sys csf auzorisation pending-list 
 +   
 +---- 
 +==== Security Features in the Firewalls explained ==== 
 +  - Threat Protection performance is measured with :Firewall, IPS, Application Control and Malware Protection enabled. 
 +  - NGFW performance is measured with : Firewall, IPS and Application Control enabled. 
 +  - IPS (Enterprise Mix), Application Control, NGFW and Threat Protection are measured with Logging enabled. 
network_stuff/fortinet.1697555440.txt.gz · Last modified: (external edit)