12.03.2015 Views

FortiGate Administration Guide - FirewallShop.com

FortiGate Administration Guide - FirewallShop.com

FortiGate Administration Guide - FirewallShop.com

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Static Route<br />

Router Static<br />

Default route and default gateway<br />

In the factory default configuration, entry number 1 in the Static Route list is<br />

associated with a destination address of 0.0.0.0/0.0.0.0, which means any/all<br />

destinations. This route is called the “static default route”. If no other routes are<br />

present in the routing table and a packet needs to be forwarded beyond the<br />

<strong>FortiGate</strong> unit, the factory configured static default route causes the <strong>FortiGate</strong> unit<br />

to forward the packet to the default gateway.<br />

To prevent this you must either edit the factory configured static default route to<br />

specify a different default gateway for the <strong>FortiGate</strong> unit, or delete the factory<br />

configured route and specify your own static default route that points to the default<br />

gateway for the <strong>FortiGate</strong> unit.<br />

For example, consider Figure 146, which shows a <strong>FortiGate</strong> unit connected to a<br />

router. To ensure that all outbound packets destined to any network beyond the<br />

router are routed to the correct destination, you must edit the factory default<br />

configuration and make the router the default gateway for the <strong>FortiGate</strong> unit.<br />

Figure 146:Making a router the default gateway<br />

Internet<br />

192.168.10.1<br />

Router<br />

external<br />

<strong>FortiGate</strong>_1<br />

Internal network<br />

192.168.20.0/24<br />

To route outbound packets from the internal network to destinations that are not<br />

on network 192.168.20.0/24, you would edit the default route and include the<br />

following settings:<br />

• Destination IP/mask: 0.0.0.0/0.0.0.0<br />

• Gateway: 192.168.10.1<br />

<strong>FortiGate</strong> Version 3.0 MR5 <strong>Administration</strong> <strong>Guide</strong><br />

236 01-30005-0203-20070830

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!