Open Shortest Path First (OSPF)

Configuring OSPF on the FortiGate units

Three of the routers are designated routers (DR) and one is a backup DR (BDR). This is achieved through the lowest router ID numbers, or OSPF priority settings.

Also each area needs to be configured as each respective type of area – stub, backbone, or regular. This affects how routes are advertised into the area.

 

To configure OSPF on Router1 – web-based manager

1. Go to Router > Dynamic > OSPF.

2. Enter 11.101.1 for the Router ID and select Apply.

3. In Areas, select Create New, set the following information, and select OK.

Area                                            1.1.1.1

Type                                            Stub

Authentication                           None

4. In Networks, select Create New, set the following information, and select OK.

IP/Netmask                                 10.11.101.0/255.255.255.0

Area                                            1.1.1.1

5. In Interfaces, select Create New, set the following information, and select OK.

Name                                           Accounting

Interface                                     port1 (internal)

IP                                                 10.11.101.1

Authentication                           None

6. In Interfaces, select Create New, set the following information, and select OK.

Name                                           Backbone1

Interface                                     port2 (external1)

IP                                                 10.11.110.1

Authentication                           None

 

To configure OSPF on Router2 – web-based manager

1. Go to Router > Dynamic > OSPF.

2. Enter 11.102.2 for the Router ID and select Apply.

3. In Areas, select Create New, set the following information, and select OK.

Area                                            0.0.0.0

Type                                            Regular

Authentication                           None

4. In Networks, select Create New, set the following information, and select OK.

IP/Netmask                                 10.11.102.2/255.255.255.0

Area                                            0.0.0.0

5. In Networks, select Create New, set the following information, and select OK.

IP/Netmask                                 10.11.110.2/255.255.255.0

Area                                            0.0.0.0

6. In Networks, select Create New, set the following information, and select OK.

IP/Netmask                                 10.11.111.2/255.255.255.0

Area                                            0.0.0.0

7. In Interfaces, select Create New, set the following information, and select OK.

Name                                           RnD network

Interface                                     port1 (internal)

IP                                                 10.11.102.2

Authentication                           None

8. In Interfaces, select Create New, set the following information, and select OK.

Name                                           Backbone1

Interface                                     port2 (external1)

IP                                                 10.11.110.2

Authentication                           None

9. In Interfaces, select Create New, set the following information, and select OK.

Name                                           Backbone2

Interface                                     port3 (external2)

IP                                                 10.11.111.2

Authentication                           None

 

To configure OSPF on Router3 – web-based manager

1. Go to Router > Dynamic > OSPF.

2. Enter 11.103.3 for the Router ID and then select Apply.

3. In Areas, select Create New, set the following information, and then select OK.

Area                                            0.0.0.0

Type                                            Regular

Authentication                           None

4. In Networks, select Create New, set the following information, and select OK.

IP/Netmask                                 10.11.102.3/255.255.255.0

Area                                            0.0.0.0

5. In Networks, select Create New, set the following information, and select OK.

IP/Netmask                                 10.11.110.3/255.255.255.0

Area                                            0.0.0.0

6. In Networks, select Create New, set the following information, and select OK.

IP/Netmask                                 10.11.111.3/255.255.255.0

Area                                            0.0.0.0

7. In Interfaces, select Create New, set the following information, and select OK.

Name                                           RnD network

Interface                                     port1 (internal)

IP                                                 10.11.103.3

Authentication                           None

8. In Interfaces, select Create New, set the following information, and select OK.

Name                                           Backbone1

Interface                                     port2 (external1)

IP                                                 10.11.110.3

Authentication                           None

9. In Interfaces, select Create New, set the following information, and select OK.

Name                                           Backbone2

Interface                                     port3 (external2)

IP                                                 10.11.111.3

Authentication                           None

To configure OSPF on Router4 – web-based manager

1. Go to Router > Dynamic > OSPF.

2. Enter 11.104.4 for the Router ID and then select Apply.

3. In Areas, select Create New.

4. Set the following information, and select OK.

Area                                            2.2.2.2

Type                                            Regular

Authentication                           None

5. In Networks, select Create New, set the following information, and select OK.

IP/Netmask                                 10.11.104.0/255.255.255.0

Area                                            0.0.0.0

6. In Networks, select Create New, set the following information, and select OK.

IP/Netmask                                 10.11.111.0/255.255.255.0

Area                                            0.0.0.0

7. In Networks, select Create New, set the following information, and select OK.

IP/Netmask                                 172.20.120.0/255.255.255.0

Area                                            0.0.0.0

8. In Interfaces, select Create New, set the following information, and select OK.

Name                                           Network Admin network

Interface                                     port1 (internal)

IP                                                 10.11.104.4

Authentication                           None

9. In Interfaces, select Create New, set the following information, and select OK.

Name                                           Backbone2

Interface                                     port2 (external2)

IP                                                 10.11.111.4

Authentication                           None

10. In Interfaces, select Create New, set the following information, and select OK.

Name                                           ISP

Interface                                     port3 (ISP)

IP                                                 172.20.120.4

Authentication                           None


Having trouble configuring your Fortinet hardware or have some questions you need answered? Check Out The Fortinet Guru Youtube Channel! Want someone else to deal with it for you? Get some consulting from Fortinet GURU!

One thought on “Open Shortest Path First (OSPF)

  1. Pratik

    I was configuring OSPF for Kotak Team, On fortigate firewall for Ranchi Location and I have done below things-

    • Specified Loopback Network,
    • LAN network,
    • WAN Network with local firewall Is connected to Its peer.
    • I have also configured Policy and Static route

    After that Im able to ping neighbor IP from firewall but Neighbor Is not established, Please Kind me In this case to overcome this Issue.

    Reply

Leave a Reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.