FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
jguerra
Staff
Staff
Article Id 333651
Description This article describes how to connect to the FortiGate management IP using SSH.
Scope

FortiGate.

Solution

Prerequisites:

  • Terminal Software like PuTTY.
  1. Ensure that SSH access is enabled on the interface for the SSH connection. For example, in the scenario, a connection will be attempted via SSH using the 'internal' interface when only HTTPS is enabled. (This configuration can be applied to any interface on the FortiGate):
 

1.png

 

  1. Edit the Interface and enable SSH:


2.png
Select 'OK and confirm the changes.  Now the interface should look like this:

3.png

 

  1. Check which port number is configured for SSH after going to System -> Settings

 

Screenshot.png

 

  1. Run the preferred terminal software and configure the connections as follows:
  • Host Name (or IP address): The FortiGate's Interface IP. In this example, 192.168.10.1.
  • Port: 22 (default TCP SSH Port).

4.png

 

  1. Select 'Open' to launch a CLI window. Enter the Administrator Credentials as requested (the same ones used for HTTPS

    access to the FortiGate). Press 'Enter', input the password, and press 'Enter' again.

 

5.png

CLI access to the FortiGate through SSH will then be available. 

 

Related article:

Troubleshooting Tip: FortiGate HTTPS, SSH access if the trusted hosts feature is enabled