Packet flow: FortiGates with NP6 processors – packets in an NTurbo session
Packet flow: FortiGates with NP6 processors – packets in an NTurbo session If your FortiGate supports NTurbo, many flow-based UTM/NGFW sessions can be offloaded to NP6 processors. After the first...
View ArticleUTM/NGFW packet flow: flow-based inspection
UTM/NGFW packet flow: flow-based inspection Flow-based UTM/NGFW inspection identifies and blocks security threats in real time as they are identified by sampling packets in a session and uses...
View ArticleUTM/NGFW packet flow: proxy-based inspection
UTM/NGFW packet flow: proxy-based inspection If a FortiGate or VDOM is configured for proxy-based inspection then a mixture of flow-based and proxy-based inspection occurs. Packets initially encounter...
View ArticleChapter 17 – Load Balancing
Chapter 17 – Load Balancing This FortiOS Handbook chapter contains the following sections: Configuring load balancing describes FortiOS server load balancing. Load balancing configuration examples...
View ArticleMonitoring load balancing
Monitoring load balancing From the web-based manager you can go to Monitor > Load Balance Monitor to monitor the status of configured virtual servers and real server and start or stop the real...
View ArticleLoad balancing diagnose commands
Load balancing diagnose commands You can also use the following diagnose commands to view status information for load balancing virtual servers and real servers: diagnose firewall vip realserver {down...
View ArticleBasic load balancing configuration example
Basic load balancing configuration example This section describes the steps required to configure the load balancing configuration shown below. In this configuration a FortiGate-51B unit is load...
View ArticleHTTP and HTTPS load balancing, multiplexing, and persistence
HTTP and HTTPS load balancing, multiplexing, and persistence In a firewall load balancing virtual server configuration, you can select HTTP to load balance only HTTP sessions. The virtual server will...
View ArticleSSL/TLS load balancing
SSL/TLS load balancing In a firewall load balancing virtual server configuration, you can select SSL to load balance only SSL and TLS sessions. The virtual server will load balance SSL and TLS sessions...
View ArticleSSL offloading support or Internet Explorer 6
SSL offloading support or Internet Explorer 6 In some cases the Internet Explorer 6 web browser may be able to access real servers. To resolve this issue, disable the ssl-send-empty-frags option:...
View ArticleIP, TCP, and UDP load balancing
IP, TCP, and UDP load balancing You can load balance all IP, TCP or UDP sessions accepted by the security policy that includes a load balancing virtual server with the type set to IP, TCP, or UDP....
View ArticleLoad balancing configuration examples
Load balancing configuration examples Example HTTP load balancing to three real web servers In this example, a virtual web server with IP address 192.168.37.4 on the Internet, is mapped to three real...
View ArticleExample Basic IP load balancing configuration
Example Basic IP load balancing configuration This example shows how to add a server load balancing virtual IP that load balances all traffic among 3 real servers. In the example the Internet is...
View ArticleChapter 18 – Logging and Reporting
Chapter 18 – Logging and Reporting This FortiOS Handbook chapter contains the following sections: Logging and reporting overview provides general information about logging. We recommend that you begin...
View ArticleFortiOS features available for logging
FortiOS features available for logging Logs record FortiGate activity, providing detailed information about what is happening on your network. This recorded activity is found in log files, which are...
View ArticleLog messages
Log messages Log messages are recorded by the FortiGate unit, giving you detailed information about the network activity. Each log message has a unique number that helps identify it, as well as...
View ArticleLog files and types
Log files and types As the log messages are being recorded, log messages are also being put into different log files. The log file contains the log messages that belong to that log type, for example,...
View ArticleHow to choose a log device for your network topology
How to choose a log device for your network topology When planning the log requirements, you must also consider your network’s topology and whether archiving is required, such as if there is a legal...
View ArticleLog devices
Log devices The FortiGate unit supports a variety of log devices, including the FortiCloud service and FortiAnalyzer units. This provides greater flexibility not only when choosing a log device, but...
View ArticleTuning IPS on a desktop FortiGate
A desktop FortiGate does not have the same horsepower as a full size model and sometimes traffic can cause the IPS to spike the CPU for several seconds. However IPS is still a very valuable tool for...
View Article