12.03.2015 Views

FortiGate Administration Guide - FirewallShop.com

FortiGate Administration Guide - FirewallShop.com

FortiGate Administration Guide - FirewallShop.com

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Router Static<br />

Routing concepts<br />

Router Static<br />

This section explains some general routing concepts, how to define static routes<br />

and route policies. A route provides the <strong>FortiGate</strong> unit with the information it<br />

needs to forward a packet to a particular destination on the network. A static route<br />

causes packets to be forwarded to a destination other than the factory configured<br />

default gateway.<br />

The factory configured static default route provides you with a starting point to<br />

configure the default gateway. You must either edit the factory configured static<br />

default route to specify a different default gateway for the <strong>FortiGate</strong> unit, or delete<br />

the factory configured route and specify your own static default route that points to<br />

the default gateway for the <strong>FortiGate</strong> unit. See “Default route and default gateway”<br />

on page 236.<br />

You define static routes manually. Static routes control traffic exiting the <strong>FortiGate</strong><br />

unit—you can specify through which interface the packet will leave and to which<br />

device the packet should be routed.<br />

As an option, you can define route policies. Route policies specify additional<br />

criteria for examining the properties of in<strong>com</strong>ing packets. Using route policies, you<br />

can configure the <strong>FortiGate</strong> unit to route packets based on the IP source and/or<br />

destination addresses in packet headers and other criteria such as on which<br />

interface the packet was received and which protocol (service) and/or port is<br />

being used to transport the packet.<br />

This section describes:<br />

• Routing concepts<br />

• Static Route<br />

• Policy Route<br />

Routing concepts<br />

Routing is a <strong>com</strong>plex topic. Because the <strong>FortiGate</strong> unit works as a security device<br />

on a network and packets must pass through the <strong>FortiGate</strong> unit, you need to<br />

understand a number of basic routing concepts in order to configure the <strong>FortiGate</strong><br />

unit appropriately.<br />

Whether you administer a small or large network, this module will help you<br />

understand how the <strong>FortiGate</strong> unit performs routing functions.<br />

The following topics are covered in this section:<br />

• How the routing table is built<br />

• How routing decisions are made<br />

• Multipath routing and determining the best routeHow route sequence affects<br />

route priority<br />

• How route sequence affects route priority<br />

• Equal Cost Multipath (ECMP) Routes<br />

• Blackhole Routing<br />

<strong>FortiGate</strong> Version 3.0 MR5 <strong>Administration</strong> <strong>Guide</strong><br />

01-30005-0203-20070830 231

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!