Professional Documents
Culture Documents
version 4.4.0
Q1 2016 EMEA SE Meeting
Rafael Gracioli – CSE
https://www.dropbox.com/s/7wvbie3t0fsq3ar/FortiADC-D-Advanced-Workshop-v2.0.2.1-package.zip?dl=0
3
Prerequisites
4
VM Management Network
5
VM Management Network Customized
6
FortiADC VM Installation
7
LAN Segments
§ Start the FortiADC VM: VMWare Player -> Open Virtual Machine -> select
“fortiadc-vm-64-hw7.ovf” file
§ In VMware Player, press Ctrl+d to enter Virtual Machine Settings
» Select a Network Adapter
» Click on LAN Segments
» Click add to create the following LAN segments:
§ Clients
§ Servers
§ Heartbeat
§ Data
§ decrypt
§ encrypt
8
Network Adapters
9
FortiADC Initial Configuration
10
FortiADC Initial Configuration
Verification
§ Ping port1
§ From terminal, SSH to FortiADC
§ Open FortiADC GUI
§ Save initial config: System -> Maintenance -> Backup and
Restore -> Backup
11
Network Design
.3 .3
For*ADC
1.1.1/24 2.2.2/24
VM Environment
12
FortiADC Interfaces
13
Client and Server Configuration
1. Start fad-ws-client and fad-ws-server VMs - IMPORTANT: if asked, choose "I
moved it" to preserve network interfaces
2. Management IPs:
» fad-ws-client: 10.8.2.105
» fad-ws-server: 10.8.2.106
3. user: root
password: workshop
4. Connect network interfaces as follow:
» fad-ws-client eth0 (Network Adapter 1) on NAT
» fad-ws-client eth1 (Network Adapter 2) on LAN Segment "Clients"
» fad-ws-server eth0 (Network Adapter 1) on NAT
» fad-ws-server eth1 (Network Adapter 2) on LAN Segment "Servers"
14
Initial Setup Verification
§ System Status:
FortiADC-VM # get system status
Version: FortiADC-VM v4.4.0,build0480,160113
VM Registration: Trial License is in use.(Expire in 14 days 23 hours 57 mins)
VM License File: Trial License.
VM Resources: 1 CPU/1 allowed, 1619 MB RAM/2048 MB allowed, 29 GB Disk/1024 GB allowed
Serial-Number: FADV0000000TRIAL
WAF Signature DB: 00001.00001
IP Reputation DB: 00001.00020
Bootloader version: n/a
Log disk: Capacity 29 GB, Used 56 MB ( 0.19%), Free 29 GB
Hostname: FortiADC-VM
HA configured mode: standalone
HA effective mode: Standalone
Distribution: International
Uptime: 0 days 0 hours 2 minutes
Last reboot: Fri Jan 29 07:59:41 PST 2016
System time: Fri Jan 29 08:02:24 PST 2016
Statistics table: synced with config
16
Initial Setup Verification
Interface Configuration
FortiADC-VM # get system interface port2
type : physical
mode : static
vdom : root
redundant-master :
ip : 1.1.1.254/24
ip6 : ::/0
allowaccess : https ping ssh
mtu : 1500
speed : auto
status : up
mac-addr : 00:0c:29:24:aa:32
secondary-ip : disable
ha-node-secondary-ip : disable
17
Initial Setup Verification
Interface Status
FortiADC-VM # diagnose hardware get deviceinfo nic-detail port2
(...)
Speed: 10000Mb/s
Duplex: Full
Port: Twisted Pair
PHYAD: 0
Transceiver: internal
Auto-negotiation: off
MDI-X: Unknown
Supports Wake-on: uag
Wake-on: d
Link detected: yes
(...)
18
Initial Setup Verification
Routing Table
19
Initial Setup Verification
Interfaces – GUI
20
Initial Setup
21