2) Edit the interface and activate SSH and HTTPS, the most secure options for management access to the device.
Create an administrative account for the Support Engineer.3) To add a admin account, go to System --> Admin and selecting Create New.
4) With the public IP the Support engineer is using, define a trusted host for this account.
Access Conflicts
Depending on the configuration of inbound services on your FortiGate unit, HTTPS access may be in conflict.
For example, if a static NAT Virtual IP is configured to use the interface IP of your FortiGate unit, all data received on that IP is forwarded to the internal server. If this is the case, we can explore shared, web-based remote access options.
If a port forward VIP using HTTPS or port 443 is in use, change the default HTTPS management port to another that is not in use.
System --> Admin --> Settings.
Once changed, HTTPS access to the FortiGate web-based manager is managed with a colon and the new port. For example - https://192.168.1.99:4430.Related Articles
Working with the Technical Assistance Center (TAC) - Remote Management Access
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2024 Fortinet, Inc. All Rights Reserved.