Setting up a firewall is one of the most critical steps in ensuring the security of your business network. The FortiGate-101F, a next-generation firewall (NGFW) by Fortinet, offers advanced security features to protect your network from cyber threats while ensuring high network performance. If you’re looking to set up the FortiGate 101F for the first time, this guide will walk you through the initial setup process, helping you secure your network quickly and efficiently.
In this article, we’ll cover the key steps to set up the FortiGate-101F, including configuring the device, setting up VPN for remote access, applying security policies, and ensuring the device is working optimally to protect your network.
Introduction to FortiGate-101F
The FortiGate-101F is a high-performance firewall designed for medium to large-sized businesses. It offers a wide range of security features, including Intrusion Prevention System (IPS), VPN support, deep packet inspection (DPI), application control, SSL inspection, and more. With its ability to handle up to 20 Gbps of throughput, the FortiGate-101F provides robust protection for business networks without compromising on performance.
Before diving into the setup process, make sure you have access to the FortiGate-101F unit, a computer for management, and network cables for connection.
Steps to Set Up FortiGate-101F
Step 1: Unbox and Physically Set Up the FortiGate-101F
The first step in setting up your FortiGate-101F is to unbox the device and connect it physically to your network.
- Place the FortiGate-101F on a stable surface or mount it in a rack if required.
- Connect the power supply to the FortiGate-101F and plug it into a power source.
- Connect the WAN port to your internet source (e.g., modem or router) via an Ethernet cable.
- Connect the LAN port to your network switch or directly to a computer if needed.
- Once the physical setup is complete, power on the device and wait for it to boot up.
Step 2: Access the Web-Based Management Interface
- Connect your computer to the same network as the FortiGate-101F.
- Open a web browser and type the default IP address for the FortiGate-101F into the address bar:
https://192.168.1.99 (Default IP address). - Log in using the default username and password:
Username: admin
Password: (leave blank by default) - Click Login to access the FortiGate web interface.
Step 3: Configure Basic Settings
Once you’re logged into the FortiGate-101F, it’s time to configure some basic settings:
Change the Admin Password
To enhance security, immediately change the default password for the admin account:
- Go to System > Admin > Administrators.
- Select admin and click Edit.
- In the Password field, enter your new password and save the changes.
Configure the WAN and LAN Interfaces
Next, configure the WAN (internet) and LAN (local network) interfaces:
- Navigate to Network > Interfaces.
- Edit the WAN interface and enter the IP address settings provided by your ISP (Internet Service Provider).
- Edit the LAN interface and set it up for your internal network. By default, it should be set to 192.168.1.99.
- Ensure both interfaces are up and configured correctly for your network.
Step 4: Set Up Basic Firewall Policies
The FortiGate-101F uses firewall policies to control the flow of traffic between networks (such as between the LAN and WAN). To configure basic policies:
- Navigate to Policy & Objects > IPv4 Policy.
- Click Create New to add a policy.
- Define the following:
- Source Interface: LAN
- Destination Interface: WAN
- Source Address: Any (or define specific addresses)
- Destination Address: Any (or define specific addresses)
- Action: Accept
- Schedule: Always
- Service: ALL (or specific services like HTTP, HTTPS)
- Click OK to save the policy.
This policy allows traffic from your internal network to access external resources. You can further customize the policy to suit your needs.
Step 5: Set Up VPN for Remote Access
If you have remote employees or branch offices, setting up a VPN (Virtual Private Network) will provide secure access to your network.
Configure SSL VPN
- Go to VPN > SSL-VPN Settings.
- Set up the Server Interface to the WAN interface.
- Configure the SSL VPN Port (default is 443).
- Under Authentication/Portal Mapping, select the users or groups that should have access.
- Click Apply to save the settings.
Configure IPSec VPN
- Navigate to VPN > IPSec Tunnels.
- Click Create New to set up a new IPSec VPN tunnel.
- Enter the IPSec settings, including the pre-shared key, remote gateway IP, and local interface.
- Configure the VPN policy to allow traffic between the remote users and your internal network.
- Save and apply the settings.
Step 6: Enable Logging and Monitoring
For security monitoring, enable logging and configure alerts to track activities:
- Go to Log & Report > Log Settings.
- Select the log severity level (e.g., informational, warning, critical).
- Enable Syslog or FortiAnalyzer integration to centralize log data.
- Set up alerts for specific activities like failed login attempts or suspicious traffic.
Step 7: Finalize Setup and Test
- After completing the initial configuration, perform a network test to ensure that the firewall is functioning properly and blocking unauthorized access.
- Verify VPN access by connecting remotely and ensuring secure communication.
- Test web filtering by trying to access a blocked website and confirming the FortiGate-101F blocks it.
FortiGate-101F Technical Specifications
To better understand the FortiGate-101F’s performance, here’s a summary of its key specifications:
Specification | Details |
Firewall Throughput | 20 Gbps |
IPS Throughput | 4.5 Gbps |
VPN Throughput | 7 Gbps |
SSL Inspection Throughput | 2.5 Gbps |
Concurrent Sessions | 2,000,000 |
New Sessions/Sec | 50,000 |
Interfaces | 12x GE RJ45 ports, 2x GE SFP slots |
Form Factor | Desktop |
Dimensions (HxWxD) | 1.7 x 10.9 x 8.2 inches |
Weight | 4.2 lbs (1.9 kg) |
Power Supply | 100-240V AC |
Operating Temperature | 0°C to 40°C (32°F to 104°F) |
Conclusion
The FortiGate-101F is a powerful and reliable solution for securing your network. With advanced features like VPN support, intrusion prevention, application control, and SSL inspection, the FortiGate-101F provides comprehensive protection for your business, ensuring that sensitive data and critical assets remain secure. This guide walks you through the steps needed to set up the FortiGate-101F and configure it to protect your network effectively. With its high-performance capabilities, ease of use, and scalability, the FortiGate-101F is an excellent choice for businesses looking to secure their network from external and internal threats.
As an international IT solutions provider, IT hardware solutions serves businesses and public organizations. Purchase Cisco routers, switches, and other IT products with us.