System Settings FortiManager 5.2

The following information is displayed:
Management Interface
IP/Netmask The IP address and netmask associated with this interface.
IPv6 Address The IPv6 address associated with this interface.
Administrative Access Select the allowed administrative service protocols from: HTTPS, HTTP, PING, SSH, Telnet, SNMP, and Web Service.
IPv6 Administrative Access Select the allowed IPv6 administrative service protocols from: HTTPS, HTTP, PING, SSH, Telnet, SNMP, and Web Service.
Service Access Select the Fortinet services that are allowed access on this interface. These include FortiGate updates and web filtering /antispam.By default all service access is enabled on port1, and disabled on port2.
Default Gateway The default gateway associated with this interface.
DNS
Primary DNS Server Type the primary DNS server IP address.
Secondary DNS Server Type the secondary DNS server IP address.
The following options are available:
All Interfaces Click to open the network interface list. See Viewing the network interface list.
Routing Table Click to open the routing table. See Configuring static routes.
IPv6 Routing Table Click to open the IPv6 routing table. See Configuring IPv6 static routes.
Diagnostic Tools Select to run available diagnostic tools, including Ping, Traceroute, and View logs.
Apply Select Apply to save the changes made in the Management Interface settings page.
Viewing the network interface list
To view the network interface list, select the All Interfaces button. Double-click an port to edit the interface.
Network interface list

The following information is available:
Name The names of the physical interfaces on your FortiManager unit. The name, including number, of a physical interface depends on the model. Unlike FortiGate, you cannot set alias names for the interfaces. For more information, on configuring the interface, see Configuring network interfaces. If HA operation is enabled, the HA interface has /HA appended to its name.
IP/Netmask The IP address and netmask associated with this interface.
IPv6 Address The IPv6 address associated with this interface.
Description A description of the interface.
Administrative Access The list of allowed administrative service protocols on this interface. These include HTTP, HTTPS, PING, SSH, TELNET, SNMP, and Web Service.
IPv6 Administrative access The list of allowed IPv6 administrative service protocols on this interface.
Service Access The list of Fortinet services that are allowed access on this interface. These include FortiGate updates, web filtering, and email filter.
By default all service access is enabled on port1, and disabled on port2.
Enable Displays if the interface is enabled or disabled. If the port is enabled, an enabled icon appears in the column. If the interface is not enabled, a disabled icon appears in the column.
The following options are available in the right-click menu:
Edit Select the interface in the table, right-click, and select Edit in the right-click menu to edit the entry. Alternatively, you can double-click the entry to open the Edit Interface page.
Delete Select the interface in the table, right-click, and select Delete in the right-click menu to remove the entry. Select OK in the confirmation dialog box to complete the delete action.
Configuring network interfaces
In the Network interface list select the interface name link to change the interface options.
Configure network interfaces

The following settings are available.
Enable Select to enable this interface. An enabled icon appears in the interface list to indicate the interface is accepting network traffic. When not selected, a disabled icon appears in the interface list to indicate the interface is down and not accepting network traffic.
Alias Type an alias for the port to make it easily recognizable.
IP Address/Netmask Type the IP address and netmask for the interface.
IPv6 Address Type the IPv6 address for the interface.
Administrative Access Select the services to allow on this interface. Any interface that is used to provide administration access to the FortiManager unit will require at least HTTPS or HTTP for web-manager access, or SSH for CLI access.
IPv6 Administrative Access Select the services to allow on this interface.
Service access Select the services that will communicate with this interface.
Description Type a brief description of the interface (optional).
Configuring static routes
Go to System Settings > Network and select the Routing Table button to view, edit, or add to the static routing table. You may need to add entries to the routing table so that the FortiManager unit can reach FortiGate units on remote networks. Routing table

The following information is displayed:
ID The route number.
IP/Netmask The destination IP address and netmask for this route.
Gateway The IP address of the next hop router to which this route directs traffic.
Interface The network interface that connects to the gateway.
The following options are available:
Create New Select Create New to add a new route. See Add a static route.Select the route number to edit the settings.
Edit Select the checkbox next to the route number, right-click, and select Edit in the rightclick menu to edit the entry. Alternatively, you can double-click the entry to open the Edit Route page.
Delete Select the check box next to the route number and select Delete to remove the route from the table. Delete is also available in the right-click menu. Select OK in the confirmation dialog box to complete the delete action.
Add a static route
Go to System Settings > Network, select the Routing Table button, and select Create New to add a route, or select the route number to edit an existing route.
Create new route

Configure the following settings:
Destination IP/Mask Type the destination IP address and netmask for this route.
Gateway Type the IP address of the next hop router to which this route directs traffic.
Interface Select the network interface that connects to the gateway.
Configuring IPv6 static routes
Go to System Settings > Network and select the IPv6 Routing Table button to view, edit, or add to the IPv6 static routing table. You may need to add entries to the routing table so that the FortiManager unit can reach FortiGate units on remote networks.
The following information is displayed:
ID The route number.
IPv6 Address The destination IPv6 address for this route.
Gateway The IP address of the next hop router to which this route directs traffic.
Interface The network interface that connects to the gateway.
The following options are available:
Create New Select Create New to add a new route. See Add a IPv6 static route. Select the route number to edit the settings.
Edit Select the checkbox next to the route number, right-click, and select Edit in the rightclick menu to edit the entry. Alternatively, you can double-click the entry to open the Edit IPv6 Route page.
Delete Select the check box next to the route number and select Delete to remove the route from the table. Select OK in the confirmation dialog box to complete the delete action.
Add a IPv6 static route
Go to System Settings > Network, select the IPv6 Routing Table button, and select Create New to add a route, or select the route number to edit an existing route.
Create new IPv6 route

Configure the following settings:
Destination IPv6 Prefix Type the destination IPv6 prefix for this route.
Gateway Type the IP address of the next hop router to which this route directs traffic.
Interface Select the network interface that connects to the gateway.


Having trouble configuring your Fortinet hardware or have some questions you need answered? Check Out The Fortinet Guru Youtube Channel! Want someone else to deal with it for you? Get some consulting from Fortinet GURU!

Leave a Reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.