newbie needs help with 200f configuration
I was given a 200f to familiarise my self with until it gets moved to a site, set up ,and registered. I was given a basic list of things to try and accomplish with it while I had it and I've gone as far as my limited knowledge can take me. I will have nothing to do with this device once it leaves my care where it will be factory reset. I was essentialy given it to probe wether or not I can broaden my responsibility range. If there is anyone willing to help a guy grow his knowledge, any help is appreciated. I'll list everything I've done below. maybe yall can spot some things I've done wrong. I was told not to register it so calling tech support is not an option. Any help is appreciated, just desperately trying to learn while I have this short window of opportunity.
Things to do: Access GUI, Connect to internet(stuck here), only allow http and https, web filter only allowing google, SSL VPn to firewall, L2TP to firewall.
For topology I have an ISP supplied router and hub with a PC connected to ethernet port 1 and the fortigate 200f on ethernet port 3. Then a laptop connected to the console and port 1 on the fortigate with ethernet on port 15.
For network I have:
Interfaces:
lanswitch ports 1-14; Type hardware switch; Addressing mode is manual IP/Netmask 10.1.1.1/255.255.255.0; Create address object matching subnet ON; Secondary ip OFF; Ipv4 enabled https http ssh ping; Receive and transmit LLDP use vdom settings; DHCP ON with address range 10.1.1.100-10.1.1.254 and netmask 255.255.255.0 ; Default gateway SPECIFY 10.1.1.5 ; DNS server same as system DNS
port15(internet): physical interface; role is WAN; Addressing mode DHCP connected 192.168.1.169/255.255.255.0 ; Aquired DNS and default gateway 192.168.1.1 ; Retrieve gateway from server is ON; Distance is 5; Override internal DNS is ON; IPv4 enabled are https http ssh and ping; receive LLDP is ENABLED; outbound shaping profile is OFF;
Static route: Destiantion Subnet 0.0.0.0/0.0.0.0 ; Gateway address specify 192.168.1.1 ; interface port15(internet); distance 10; Status enabled;
For Policies I have a single firewall policy: Incoming interface Lanswitch; Outgoing interface port15(internet);
Source is: IP/netmask 10.1.1.0 / 255.255.255.0 ; Interface ANY; Static route configuration OFF; Destination(all) 0.0.0.0 / 0.0.0.0
Schedule ALWAYS; Service ALL; Action ACCEPT; Inspection mode FLOW based; NAT ON; IP pool config use outgoing interface address; perserve source port off; protocol options default; antivirus ON; web filter OFF; DNS filter OFF; application control default; SSl inspection certificate inspection; log allowed traffic security events; enable this policy ON;
