beautypg.com

Factory default firewall configuration – Fortinet FortiGate-800 User Manual

Page 32

background image

32

Fortinet Inc.

Factory default FortiGate configuration settings

Getting started

Factory default firewall configuration

The factory default firewall configuration is the same in NAT/Route and Transparent
mode.

Management access

Internal

HTTPS, Ping

External

Ping

DMZ

HTTPS, Ping

Interface 1

Ping

Interface 2

Ping

Interface 3

Ping

Interface 4

Ping

Table 3: Factory default Transparent mode network configuration (Continued)

Table 4: Factory default firewall configuration

Internal
Address

Internal_All

IP: 0.0.0.0

Represents all of the IP addresses on the internal

network.

Mask: 0.0.0.0

External
Address

External_All

IP: 0.0.0.0

Represents all of the IP addresses on the external

network.

Mask: 0.0.0.0

DMZ
Address

DMZ_All

IP: 0.0.0.0

Represents all of the IP addresses on the DMZ

network.

Mask: 0.0.0.0

Recurring
Schedule

Always

The schedule is valid at all times. This means that

the firewall policy is valid at all times.

Firewall
Policy

Internal->External

Firewall policy for connections from the internal

network to the external network.

Source

Internal_All

The policy source address. Internal_All means that

the policy accepts connections from any internal IP

address.

Destination External_All

The policy destination address. External_All means

that the policy accepts connections with a

destination address to any IP address on the

external network.

Schedule

Always

The policy schedule. Always means that the policy

is valid at any time.

Service

ANY

The policy service. ANY means that this policy

processes connections for all services.

Action

ACCEPT

The policy action. ACCEPT means that the policy

allows connections.

;

NAT

NAT is selected for the NAT/Route mode default

policy so that the policy applies network address

translation to the traffic processed by the policy.

NAT is not available for Transparent mode policies.

…

Traffic Shaping

Traffic shaping is not selected. The policy does not

apply traffic shaping to the traffic controlled by the

policy. You can select this option to control the

maximum or minimum amount of bandwidth

available to traffic processed by the policy.