12.03.2015 Views

FortiGate Administration Guide - FirewallShop.com

FortiGate Administration Guide - FirewallShop.com

FortiGate Administration Guide - FirewallShop.com

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Using virtual domains<br />

Configuring VDOMs and global settings<br />

Working with VDOMs and global settings<br />

When you log in as admin and virtual domains are enabled you are automatically<br />

in global configuration, as demonstrated by the VDOM option under System.<br />

Select System > VDOM to work with virtual domains.<br />

Figure 31: VDOM list<br />

Create New<br />

Management<br />

Delete<br />

Switch<br />

Name<br />

Operation Mode<br />

Interfaces<br />

Management Virtual<br />

Domain<br />

Select to add a new VDOM. Enter the new VDOM name and<br />

select OK.<br />

The VDOM must not have the same name as an existing VDOM,<br />

VLAN or zone. The VDOM name can be a maximum of 11<br />

characters long without spaces.<br />

Change the management VDOM to the selected VDOM. The<br />

management VDOM is indicated in brackets. The default<br />

management VDOM is root.<br />

If more than one VDOM is selected when Set Management is<br />

selected, the VDOM appearing first in the table will be assigned<br />

as the management VDOM. For more information see “Changing<br />

the Management VDOM” on page 77.<br />

Delete the selected VDOM.<br />

You cannot delete the root VDOM.<br />

Select to enter that VDOM.<br />

You can see which VDOM you are currently in by looking at the<br />

left side of the screen at the bottom where the name of the VDOM<br />

is displayed. The global settings screen does not have any<br />

VDOM name in this location.<br />

The name of the VDOM.<br />

The VDOM operation mode, either NAT or Transparent.<br />

The interfaces associated with this VDOM, including virtual<br />

interfaces.<br />

Indicates which VDOM is the management domain. All nonmanagement<br />

domains are indicated with a “no”.<br />

Adding interfaces to a VDOM<br />

A VDOM must contain at least two interfaces. These can be physical or virtual<br />

interfaces such as VLAN subinterfaces. By default, all physical interfaces are in<br />

the root virtual domain.<br />

As of FortiOS v3.0 MR1, inter-VDOM routing enables you to <strong>com</strong>municate<br />

between VDOMs internally without using a physical interface. This feature is only<br />

configurable with the CLI. For information on configuring inter-VDOM interfaces,<br />

see the <strong>FortiGate</strong> CLI Reference and the <strong>FortiGate</strong> VLANs and VDOMs <strong>Guide</strong>.<br />

<strong>FortiGate</strong> Version 3.0 MR5 <strong>Administration</strong> <strong>Guide</strong><br />

01-30005-0203-20070830 75

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!