Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
svm
New Contributor

Fortigate 100D

hello all, i haave this setup with the fortigate 100D: my question is: 1. what configuration will fit my netwotk setup? will i do it in transparent mode or route mode? can i do a basic firewall config on it even if it is configured in router or transparent mode? 2. i cannot access the fortinet 100D default ip.. even if i already reset it in factory default setting through cli.. i already have the 192.168.1.2 in my laptop and i cannot ping the 192.168.1.99 which is the fortigate 100D. thanks
19 REPLIES 19
rwpatterson
Valued Contributor III

Go back in through the CLI and check to see if the interface DOES have the correct IP address.

Bob - self proclaimed posting junkie!
See my Fortigate related scripts at: http://fortigate.camerabob.com

Bob - self proclaimed posting junkie!See my Fortigate related scripts at: http://fortigate.camerabob.com
svm
New Contributor

hi sir, i already configured the fortigate 100D. however. my client pc' s cannot access the internet. if i deploy the fortigate 100D as dual wan. can i set the 2 isp as primary?
rwpatterson
Valued Contributor III

You need to start off walking before you can run. What' s the browsing status for one connection? Does it work? How far does a packet get before it dies? How much troubleshooting has been done? Yes, you can set either connection up as primary, but if your not browsing yet, what difference does it make?

Bob - self proclaimed posting junkie!
See my Fortigate related scripts at: http://fortigate.camerabob.com

Bob - self proclaimed posting junkie!See my Fortigate related scripts at: http://fortigate.camerabob.com
Fullmoon
Contributor III

ORIGINAL: svm i already configured the fortigate 100D. however. my client pc' s cannot access the internet. if i deploy the fortigate 100D as dual wan. can i set the 2 isp as primary?
for Q1 still cant access fortigate local/default ip? if you can' t, means how could you reach the internet without passing your local gateway (fortigate internal ip add? for Q2 if you have 2 ISP' s set to identical distances for both default/static route. don' t forget to enable ping server on both WAN interfaces

Fortigate Newbie

Fortigate Newbie
svm
New Contributor

the browsing status for one connection is that..WAN 1 if my laptop is connected ditectly to the firewall. i can access to goggle. how ever if i connect the distribution switch to the firewall i cannot access the internet
Fullmoon
Contributor III

see to it NAT was enabled in your firewall policy from Internal-->WAN Interface

Fortigate Newbie

Fortigate Newbie
svm
New Contributor

hi fullmoon, i have enable NAT on my firewall
svm
New Contributor

hi all, i have configured this fortigate 100D. i directed my laptop to one of its port then i can access anything on the internet. how ever if i connect my switch to the fortinet port. my pc is blocked to any sites and has this error: pls help . thanks
Dave_Hall
Honored Contributor

Your attached pic shows you have FortiGuard web filtering enabled on one of the firewall policies, but the 100D can not contact/reach the FortiGuard servers. Make sure the 100D' s internal DNS setting is configured with a proper DNS server IP addresses (System/Network/DNS/). Fortigate devices need a fully functional DNS setting for FortiGuard services to work and also a valid subscription. If the 200D has both, you can force the Fortigate to reestablish a connection to the FortiGuard servers by going to /System/Config/FortiGuard/AntiVirus and IPS Options then clicking on Update Now. After this, click on the " Test Availability" under the " ...Web Filtering and Email Filtering Options" . This is for 4.0 MR 3 firmware.

NSE4/FMG-VM64/FortiAnalyzer-VM/6.0 (FWF30E/FW92D/FGT200D/FGT101E/FGT81E)/ FAP220B/221C

NSE4/FMG-VM64/FortiAnalyzer-VM/6.0 (FWF30E/FW92D/FGT200D/FGT101E/FGT81E)/ FAP220B/221C
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors