FortiGate firewall: a quick start
You can operate the FortiGate firewall through the GUI or CLI.
- Connect to the firewall.
- Change the administrator password.
- Optional: create a new administrator account.
- Optional: Change the name of the firewall.
- Optional: follow the safety recommendations.
1. Connect to the firewall
Graphical interface
CLI
-
Open the page in your browser:
https://<ip_address>Specify
<ip_address>- The IP address of the firewall that you received in the ticket after ordering the service. -
Authorize with the login and password you received in the ticket after ordering the service.
2. Change the administrator password
Graphical interface
CLI
- In the FortiGate control panel, go to System → Administrators.
- Select the admin login from the list.
- Switch to edit mode.
- Click Change password.
- Enter your old password.
- Enter a new password.
- Repeat the new password.
- Press OK.
3. Optional: create a new administrator account
By default, FortiGate has created an admin account with full access to firewall settings. You can create multiple accounts with different access to settings.
Graphical interface
CLI
- Go to System → Administrators.
- Click Create new → System administrator.
- Specify the login and password with which the administrator will connect to the firewall.
- Select an administrator profile. A profile is an administrator role with access to firewall settings. By default, the
super_adminprofile with full access to settings is available. You can create a new profile under System → Admin Profiles. - Click OK.
4. Optional: change the name of the firewall
Graphical interface
CLI
- Go to System → Settings.
- In the Host name field, specify a new name for the firewall.
- Click Apply.
5. Optional: follow the safety recommendations
You can follow the Safety Recommendations for working with a FortiGate:
- Use secure access protocols;
- enable redirection to HTTPS;
- change the default access ports;
- configure short login timeouts;
- configure login for trusted addresses;
- create multiple administrator accounts;
- configure account lockout;
- to rename the administrator account;
- disable unused interfaces;
- disable unused protocols.