Fortinet fortigate-200a Betriebsanweisung

Seite von 392
134
01-28006-0092-20041105
Fortinet Inc.
Virtual domain properties
System virtual domain
Virtual domain properties
By default, each FortiGate unit runs a virtual domain named root. This virtual domain 
includes all of the FortiGate physical interfaces, VLAN subinterfaces, zones, firewall 
policies, routing settings, and VPN settings.
Once you add a virtual domain you can configure it by adding VLAN subinterfaces, 
zones, firewall policies, routing settings, and VPN settings. You can also move 
physical interfaces from the root virtual domain to other virtual domains and move 
VLAN subinterfaces from one virtual domain to another.
This process works the same way in NAT/Route and in Transparent mode.
Exclusive virtual domain properties
The following configuration settings are exclusively part of a virtual domain and are 
not shared between virtual domains.
• System settings
• Physical interfaces (see 
)
• VLAN subinterfaces (see 
)
• Zones (see 
)
• Management IP (Transparent mode) (see 
• Routing configuration
• Router configuration in NAT/Route mode (see 
• Routing table configuration in Transparent mode (see 
)
• Firewall settings 
• Policies (see 
• Addresses (see 
)
• Service groups
• IP pools (are associated with an interface) (see 
• Virtual IPs (are associated with an interface) (see 
)
• IPSec
• PPTP
• L2TP
• Certificates