FortiGate 60F 初期化 - ぶやかー

factoryreset後のコンフィグはほとんどのケースで使えない。初期化後最低限インタフェース関連だけでもきれいにしておく。

目次 Outline

v7.0.x

config system dhcp server
    delete 1
    delete 2
end

config system ntp
    unset server-mode
end

config firewall policy
    delete 1
end

config firewall address
    delete internal
end

config system virtual-switch
    delete internal
end

config system interface
    delete fortilink
    edit "dmz"
        unset ip
        unset allowaccess
    end
end

config system global
    set admintimeout 480
    set alias "FG60F-Primary"
    set hostname "FG60F-Primary"
    set timezone 60
end

config wireless-controller setting
    set country JP
end

config system admin
    edit "admin"
        set trusthost1 10.0.0.0 255.0.0.0
        set trusthost2 172.16.0.0 255.240.0.0
        set trusthost3 192.168.0.0 255.255.0.0
    next
end

config log setting
    set resolve-port disable
    # set local-in-allow enable
    # set local-in-deny-unicast enable
    # set local-in-deny-broadcast enable
    set local-out enable
end

config log memory filter
    set severity information
    set forward-traffic enable
    set local-traffic disable
end

config log memory setting
    set status enable
end

この記事を書いた人 Wrote this article

kmatsunuma

TOP