Factory default firewall configuration – Fortinet FortiGate-800 User Manual
Page 32
32
Fortinet Inc.
Factory default FortiGate configuration settings
Getting started
Factory default firewall configuration
The factory default firewall configuration is the same in NAT/Route and Transparent
mode.
Management access
Internal
HTTPS, Ping
External
Ping
DMZ
HTTPS, Ping
Interface 1
Ping
Interface 2
Ping
Interface 3
Ping
Interface 4
Ping
Table 3: Factory default Transparent mode network configuration (Continued)
Table 4: Factory default firewall configuration
Internal
Address
Internal_All
IP: 0.0.0.0
Represents all of the IP addresses on the internal
network.
Mask: 0.0.0.0
External
Address
External_All
IP: 0.0.0.0
Represents all of the IP addresses on the external
network.
Mask: 0.0.0.0
DMZ
Address
DMZ_All
IP: 0.0.0.0
Represents all of the IP addresses on the DMZ
network.
Mask: 0.0.0.0
Recurring
Schedule
Always
The schedule is valid at all times. This means that
the firewall policy is valid at all times.
Firewall
Policy
Internal->External
Firewall policy for connections from the internal
network to the external network.
Source
Internal_All
The policy source address. Internal_All means that
the policy accepts connections from any internal IP
address.
Destination External_All
The policy destination address. External_All means
that the policy accepts connections with a
destination address to any IP address on the
external network.
Schedule
Always
The policy schedule. Always means that the policy
is valid at any time.
Service
ANY
The policy service. ANY means that this policy
processes connections for all services.
Action
ACCEPT
The policy action. ACCEPT means that the policy
allows connections.
;
NAT
NAT is selected for the NAT/Route mode default
policy so that the policy applies network address
translation to the traffic processed by the policy.
NAT is not available for Transparent mode policies.
Traffic Shaping
Traffic shaping is not selected. The policy does not
apply traffic shaping to the traffic controlled by the
policy. You can select this option to control the
maximum or minimum amount of bandwidth
available to traffic processed by the policy.