Skip to main content
pureocean
New Member
February 12, 2019
Question

Accessing Fortigate FG100D Gateway

  • February 12, 2019
  • 5 replies
  • 5562 views

Hi 

I would need some help on this configuration, previously the system administrator configured the FD 100D to be accessible by 1 assigned laptop only ( not sure what type of the configuration) and other unassigned machines (pc/laptop) when entering the FD100D's  IP, its returned with error and "Not found". That's also meaning only "assigned" laptops are allowed to access the gateway.

 

May I know what type of configuration was configured, also I have checked the entry for access list but couldn't find anything neither the Mac address for "assigned" laptop 

 

many thanks in advance 

 

 

 

    5 replies

    Toshi_Esumi
    SuperUser
    SuperUser
    February 12, 2019

    The first option to limit admin access is "trusthost" config in "config sys admin".

    The second option would be "local-in policy" under "config firewall local-in-policy".

    Check those places.

    pureocean
    pureoceanAuthor
    New Member
    February 13, 2019

    toshiesumi wrote:

    The first option to limit admin access is "trusthost" config in "config sys admin".

    The second option would be "local-in policy" under "config firewall local-in-policy".

    Check those places.

    Hi Toshi san,

    As I check on both trust host and local in policy basically I cannot find any settings have configured to blocked the "assigned" machines.

     

    For trusthost -> Under System -> admin -> administrators -> username ( double click ) -> no check on Restrict this administrator login from trusted Hosts only

     

    For local-in policy, maybe can you elaborate more on as I don't find any signification settings on these issues or maybe I might be overlooked. Hope you can give me some guidelines.

    Toshi_Esumi
    SuperUser
    SuperUser
    February 13, 2019

    GUI would probably confuse you to look at local-in policy because those pre-defined ones are all "accept" except for the default one.

    Go to CLI, then use "show firewall local-in-policy". If nothing specifically configured, it doesn't show anything. Only additionally configured ones would show up.

    Thought Leadership Security Summit. Outpace New Threats with AI - enhanced defense. Tuesday, Septmeber 15, 8:30 AM - 2:30 PM PT. The Golf Club at Newcastle, WA.
    Virtual event | September 2026. SASE summit. The age of autonomous trust. Register here!