Home
Product Pillars
Network Security
Network Security
FortiGate / FortiOS
FortiGate 5000
FortiGate 6000
FortiGate 7000
FortiProxy
NOC & SOC Management
FortiManager
FortiManager Cloud
FortiAnalyzer
FortiAnalyzer Cloud
FortiMonitor
FortiGate Cloud
Enterprise Networking
Secure SD-WAN
FortiLAN Cloud
FortiSwitch
FortiAP / FortiWiFi
FortiAP-U Series
FortiNAC-F
FortiExtender
FortiExtender Cloud
FortiAIOps
Business Communications
FortiFone
FortiVoice
FortiVoice Cloud
FortiRecorder
FortiCamera
Zero Trust Access
ZTNA
Zero Trust Network Access
FortiClient EMS
SASE
FortiSASE
Identity
FortiAuthenticator
FortiTrust Identity
FortiToken Cloud
FortiToken
Cloud Security
Hybrid Cloud Security
FortiGate Public Cloud
FortiGate Private Cloud
Flex-VM
Cloud Native Protection
FortiCNP
FortiDevSec
Web Application / API Protection
FortiWeb
FortiWeb Cloud
FortiADC
FortiGSLB
SAAS Security
FortiMail
FortiMail Cloud
FortiCASB
Security Operations
SOC Platform
FortiAnalyzer
FortiAnalyzer Cloud
FortiSIEM
/
FortiSIEM Cloud
FortiSOAR
FortiPhish
Advanced Threat Protection
FortiSandbox
FortiSandbox Cloud
FortiNDR
FortiDeceptor
FortiInsight
FortiInsight Cloud
FortiIsolator
Endpoint Security
FortiClient
FortiClient Cloud
FortiEDR
Best Practices
Solution Hubs
Cloud
FortiCloud
Public & Private Cloud
Popular Solutions
Secure SD-WAN
Zero Trust Network Access
Secure Access
Security Fabric
Tele-Working
Multi-Factor Authentication
FortiASIC
Operational Technology
4-D Resources
Secure SD-WAN
Zero Trust Network Access
Wireless
Switching
Secure Access Service Edge
Next Generation Firewall
Hardware Guides
FortiAnalyzer
FortiAnalyzer Big-Data
FortiADC
FortiAI
FortiAP / FortiWiFi
FortiAP U-Series
FortiAuthenticator
FortiCache
FortiCarrier
FortiController
FortiDDoS
FortiDDoS-F
FortiDeceptor
FortiEdge
FortiExtender
FortiGate
FortiGate-5000
FortiGate-6000
FortiGate-7000
FortiHypervisor
FortiIsolator
FortiMail
FortiManager
FortiNAC
FortiNDR
FortiProxy
FortiRecorder
FortiRPS
FortiSandbox
FortiSIEM
FortiSwitch
FortiTester
FortiToken
FortiVoice
FortiWAN
FortiWeb
FortiWLC
FortiWLM
Product A-Z
AscenLink
AV Engine
AWS Firewall Rules
FortiADC
FortiADC E Series
FortiADC Manager
FortiADC Private Cloud
FortiADC Public Cloud
FortiAIOps
FortiAnalyzer
FortiAnalyzer BigData
FortiAnalyzer BigData Private Cloud
FortiAnalyzer Cloud
FortiAnalyzer Private Cloud
FortiAnalyzer Public Cloud
FortiAP / FortiWiFi
FortiAP-U Series
FortiAuthenticator
FortiAuthenticator Private Cloud
FortiAuthenticator Public Cloud
FortiBalancer
FortiBridge
FortiCache
FortiCamera
FortiCamera Cloud
FortiCare Elite
FortiCarrier
FortiCASB
FortiCentral
FortiClient
FortiClient Cloud
FortiCloud Account Services
FortiCNP
FortiConnect
FortiController
FortiConverter Service
FortiConverter Tool
FortiCore
FortiCWP
FortiDAST
FortiDB
FortiDDoS
FortiDDoS-F
FortiDeceptor
FortiDeceptor Private Cloud
FortiDeceptor Public Cloud
FortiDevSec
FortiDNS
FortiEDR
FortiExplorer
FortiExplorer Go
FortiExtender
FortiExtender Cloud
FortiFlex
FortiFone
FortiGate / FortiOS
FortiGate Cloud
FortiGate CNF
FortiGate Private Cloud
FortiGate Public Cloud
FortiGate-5000
FortiGate-6000
FortiGate-7000
FortiGSLB
FortiGuest
FortiHypervisor
FortiInsight
FortiInsight Cloud
FortiIPAM
FortiIsolator
FortiIsolator Public Cloud
FortiLAN Cloud
FortiMail
FortiMail Cloud
FortiManager
FortiManager Cloud
FortiManager Private Cloud
FortiManager Public Cloud
FortiMonitor
FortiMonitor 100F
FortiNAC
FortiNAC-F
FortiNDR
FortiNDR Cloud
FortiNDR Private Cloud
FortiNDR Public Cloud
FortiPAM
FortiPAM Private Cloud
FortiPAM Public Cloud
FortiPhish
FortiPlanner
FortiPolicy
FortiPortal
FortiPortal Public Cloud
FortiPresence
FortiPresence VM
FortiProxy
FortiProxy Private Cloud
FortiProxy Public Cloud
FortiRecon
FortiRecorder
FortiRPS
FortiSandbox
FortiSandbox Cloud
FortiSandbox Private Cloud
FortiSandbox Public Cloud
FortiSASE
FortiScan
FortiSIEM
FortiSIEM Cloud
FortiSOAR
FortiSOAR Cloud
FortiSwitch
FortiSwitch Manager
FortiTap
FortiTester
FortiTester Private Cloud
FortiTester Public Cloud
FortiToken
FortiToken Cloud
FortiTrust Identity
FortiVoice
FortiVoice Cloud
FortiVoice Private Cloud
FortiVoice Public Cloud
FortiWAN
FortiWAN Controller
FortiWeb
FortiWeb Cloud
FortiWeb Manager Private Cloud
FortiWeb Manager Public Cloud
FortiWeb Private Cloud
FortiWeb Public Cloud
FortiWLM
FortiZTP
IPS Engine
Managed FortiGate Service
Overlay-as-a-Service
Security Awareness and Training
SOCaaS
Wireless Controller
Ordering Guides
Document
Library
Product Pillars
Network Security
Network Security
FortiGate / FortiOS
FortiGate-5000
/
6000
/
7000
FortiProxy
NOC & SOC Management
FortiManager
/
FortiManager Cloud
FortiAnalyzer
/
FortiAnalyzer Cloud
FortiMonitor
FortiGate Cloud
Enterprise Networking
Secure SD-WAN
FortiLAN Cloud
FortiSwitch
FortiAP / FortiWiFi
FortiAP-U Series
FortiNAC-F
FortiExtender
/
FortiExtender Cloud
FortiAIOps
Business Communications
FortiFone
FortiVoice
/
FortiVoice Cloud
FortiRecorder
/
FortiCamera
Zero Trust Access
ZTNA
Zero Trust Network Access
FortiClient EMS
SASE
FortiSASE
Identity
FortiAuthenticator
FortiTrust Identity
FortiToken Cloud
FortiToken
Cloud Security
Hybrid Cloud Security
FortiGate Public Cloud
FortiGate Private Cloud
Flex-VM
Cloud Native Protection
FortiCNP
FortiDevSec
Web Application / API Protection
FortiWeb
/
FortiWeb Cloud
FortiADC
/
FortiGSLB
SAAS Security
FortiMail
/
FortiMail Cloud
FortiCASB
Security Operations
SOC Platform
FortiAnalyzer
/
FortiAnalyzer Cloud
FortiSIEM
/
FortiSIEM Cloud
FortiSOAR
FortiPhish
Advanced Threat Protection
FortiSandbox
/
FortiSandbox Cloud
FortiNDR
FortiDeceptor
FortiInsight
/
FortiInsight Cloud
FortiIsolator
Endpoint Security
FortiClient
/
FortiClient Cloud
FortiEDR
Best Practices
Solution Hubs
Curated links by solution
Cloud
FortiCloud
Public & Private Cloud
Popular Solutions
Secure SD-WAN
Zero Trust Network Access
Secure Access
Security Fabric
Tele-Working
Multi-Factor Authentication
FortiASIC
Operational Technology
4-D Resources
Define, Design, Deploy, Demo
Secure SD-WAN
Zero Trust Network Access
Wireless
Switching
Secure Access Service Edge
Next Generation Firewall
Hardware Guides
Filter Products
FortiAnalyzer
FortiAnalyzer Big-Data
FortiADC
FortiAI
FortiAP / FortiWiFi
FortiAP U-Series
FortiAuthenticator
FortiCache
FortiCarrier
FortiController
FortiDDoS
FortiDDoS-F
FortiDeceptor
FortiEdge
FortiExtender
FortiGate
FortiGate-5000
FortiGate-6000
FortiGate-7000
FortiHypervisor
FortiIsolator
FortiMail
FortiManager
FortiNAC
FortiNDR
FortiProxy
FortiRecorder
FortiRPS
FortiSandbox
FortiSIEM
FortiSwitch
FortiTester
FortiToken
FortiVoice
FortiWAN
FortiWeb
FortiWLC
FortiWLM
Product A-Z
Filter Products
AscenLink
AV Engine
AWS Firewall Rules
FortiADC
FortiADC E Series
FortiADC Manager
FortiADC Private Cloud
FortiADC Public Cloud
FortiAIOps
FortiAnalyzer
FortiAnalyzer BigData
FortiAnalyzer BigData Private Cloud
FortiAnalyzer Cloud
FortiAnalyzer Private Cloud
FortiAnalyzer Public Cloud
FortiAP / FortiWiFi
FortiAP-U Series
FortiAuthenticator
FortiAuthenticator Private Cloud
FortiAuthenticator Public Cloud
FortiBalancer
FortiBridge
FortiCache
FortiCamera
FortiCamera Cloud
FortiCare Elite
FortiCarrier
FortiCASB
FortiCentral
FortiClient
FortiClient Cloud
FortiCloud Account Services
FortiCNP
FortiConnect
FortiController
FortiConverter Service
FortiConverter Tool
FortiCore
FortiCWP
FortiDAST
FortiDB
FortiDDoS
FortiDDoS-F
FortiDeceptor
FortiDeceptor Private Cloud
FortiDeceptor Public Cloud
FortiDevSec
FortiDNS
FortiEDR
FortiExplorer
FortiExplorer Go
FortiExtender
FortiExtender Cloud
FortiFlex
FortiFone
FortiGate / FortiOS
FortiGate Cloud
FortiGate CNF
FortiGate Private Cloud
FortiGate Public Cloud
FortiGate-5000
FortiGate-6000
FortiGate-7000
FortiGSLB
FortiGuest
FortiHypervisor
FortiInsight
FortiInsight Cloud
FortiIPAM
FortiIsolator
FortiIsolator Public Cloud
FortiLAN Cloud
FortiMail
FortiMail Cloud
FortiManager
FortiManager Cloud
FortiManager Private Cloud
FortiManager Public Cloud
FortiMonitor
FortiMonitor 100F
FortiNAC
FortiNAC-F
FortiNDR
FortiNDR Cloud
FortiNDR Private Cloud
FortiNDR Public Cloud
FortiPAM
FortiPAM Private Cloud
FortiPAM Public Cloud
FortiPhish
FortiPlanner
FortiPolicy
FortiPortal
FortiPortal Public Cloud
FortiPresence
FortiPresence VM
FortiProxy
FortiProxy Private Cloud
FortiProxy Public Cloud
FortiRecon
FortiRecorder
FortiRPS
FortiSandbox
FortiSandbox Cloud
FortiSandbox Private Cloud
FortiSandbox Public Cloud
FortiSASE
FortiScan
FortiSIEM
FortiSIEM Cloud
FortiSOAR
FortiSOAR Cloud
FortiSwitch
FortiSwitch Manager
FortiTap
FortiTester
FortiTester Private Cloud
FortiTester Public Cloud
FortiToken
FortiToken Cloud
FortiTrust Identity
FortiVoice
FortiVoice Cloud
FortiVoice Private Cloud
FortiVoice Public Cloud
FortiWAN
FortiWAN Controller
FortiWeb
FortiWeb Cloud
FortiWeb Manager Private Cloud
FortiWeb Manager Public Cloud
FortiWeb Private Cloud
FortiWeb Public Cloud
FortiWLM
FortiZTP
IPS Engine
Managed FortiGate Service
Overlay-as-a-Service
Security Awareness and Training
SOCaaS
Wireless Controller
Ordering Guides
Search documents and hardware ...
Version:
7.0.12
7.0.10
7.0.5
Version:
6.4.14
6.4.13
6.4.12
Version:
6.4.10
6.4.8
6.4.6
Version:
6.4.2
6.2.15
6.2.13
Version:
6.2.12
6.2.11
6.2.10
Version:
6.2.9
6.2.7
6.2.6
Version:
6.2.4
6.2.3
6.0.17
Version:
6.0.16
6.0.15
6.0.14
Version:
6.0.13
6.0.12
6.0.10
Version:
6.0.9
6.0.8
6.0.6
Version:
6.0.4
5.6.14
5.6.12
Version:
5.6.11
5.6.7
5.4.10
Table of Contents
What's New
What's new for FortiGate-6000 6.2.7
What's new for FortiGate-6000 6.2.6
What's new for FortiGate-6000 6.2.4
What's new for FortiGate-6000 6.2.3
FortiGate-6000 overview
Front panel interfaces
FortiGate-6000 schematic
Interface groups and changing data interface speeds
FortiGate-6000F hardware generations
Getting started with FortiGate-6000
Confirming startup status
Configuration synchronization
Confirming that FortiGate-6000 components are synchronized
Viewing more details about FortiGate-6000 synchronization
Configuration sync monitor
FortiGate-6000 dashboard widgets
Multi VDOM mode
Multi VDOMÂ mode and the Security Fabric
Multi VDOM mode and HA
Reverting to Multi VDOM mode
Security Fabric and Split-Task VDOM mode
Enabling Split-Task VDOM mode
Split-Task VDOM mode limitations and notes
Default Split-Task VDOM mode configuration
Split-Task VDOM mode and HA
Managing individual FortiGate-6000 management boards and FPCs
Special management port numbers
HA mode special management port numbers
Connecting to individual FPC consoles
Connecting to individual FPC CLIs
Connecting to individual FPC CLIs of the secondary FortiGate-6000 in an HAÂ configuration
Performing other operations on individual FPCs
Load balancing and flow rules
Setting the load balancing method
Flow rules for sessions that cannot be load balanced
Determining the primary FPC
SSL VPN load balancing
FortiOS Carrier GTP load balancing
Optimizing NPU GTP performance
Enabling GTP load balancing
ICMP load balancing
Load balancing TCP, UDP, and ICMP sessions with fragmented packets
Adding flow rules to support DHCP relay
Default configuration for traffic that cannot be load balanced
Showing how the DP3 processor will load balance a session
FortiGate-6000 IPsec VPN
IPsec VPN load balancing
Example FortiGate-6000 IPsec VPN VRFÂ configuration
Troubleshooting
FortiGate-6000 high availability
Introduction to FortiGate-6000 FGCP HA
Before you begin configuring HA
Connect the HA1 and HA2 interfaces for HA heartbeat communication
Default HA heartbeat VLAN triple-tagging
HA heartbeat VLAN double-tagging
Basic FortiGate-6000 HA configuration
Confirming that the FortiGate-6000 HA cluster is synchronized
Viewing more details about HA cluster synchronization
Primary FortiGate-6000 selection with override disabled (default)
Primary FortiGate-6000 selection with override enabled
Failover protection
Device failure
Link failure
FPC failure
SSD failure
Session failover
Primary FortiGate-6000 recovery
HA reserved management interfaces
Virtual clustering
Limitations of FortiGate-6000 virtual clustering
Virtual clustering VLAN/VDOM limitation
Configuring virtual clustering
HA cluster firmware upgrades
Distributed clustering
Modifying heartbeat timing
Changing how long routes stay in a cluster unit routing table
Session failover (session-pickup)
FortiGate-6000 FGSP
FGSP session synchronization options
Creating an HA1/HA2 LAG for FGSP session synchronization
Example FortiGate-6000 FGSP configuration
Inter-cluster session synchronization
Example FortiGate-6000 inter-cluster session synchronization configuration
Standalone configuration synchronization
FortiGate-6000 VRRP HA
Operating a FortiGate-6000
FortiLink support
ECMP support
VDOM-based session tables
IPv4 and IPv6 ECMP load balancing
Enabling auxiliary session support
ICAP support
SSL mirroring support
VXLAN support
Using data interfaces for management traffic
FortiGate-6000 management interface LAG and VLAN support
Setting the MTU for a data interface
More management connections than expected for one device
More ARP queries than expected for one device - potential issue on large WiFi networks
VLAN ID 1 is reserved
Connecting to FPC CLIs using the console port
Firmware upgrade basics
Installing firmware on an individual FPC
Installing firmware from the BIOSÂ after a reboot
Synchronizing the FPCs with the management board
FPC failover in a standalone FortiGate-6000
Troubleshooting an FPC failure
Adjusting global DP3 timers
Changing the FortiGate-6301F and 6501F log disk and RAID configuration
Restarting the FortiGate-6000
Packet sniffing for FPC and management board packets
NMI switch and NMI reset commands
Diagnose debug flow trace for FPC and management board activity
FortiGate-6000 v6.2.7 special features and limitations
FortiGate-6000 v6.2.6 special features and limitations
FortiGate-6000 v6.2.4 special features and limitations
FortiGate-6000 v6.2.3 special features and limitations
FortiGate-6000 config CLI commands
FortiGate-6000 execute CLI commands
Change log
Home
FortiGate-6000 6.2.7
FortiGate-6000 Handbook
FortiGate-6000 Handbook
What's New
What's new for FortiGate-6000 6.2.7
What's new for FortiGate-6000 6.2.6
What's new for FortiGate-6000 6.2.4
What's new for FortiGate-6000 6.2.3
FortiGate-6000 overview
Front panel interfaces
FortiGate-6000 schematic
Interface groups and changing data interface speeds
FortiGate-6000F hardware generations
Getting started with FortiGate-6000
Confirming startup status
Configuration synchronization
Confirming that FortiGate-6000 components are synchronized
Viewing more details about FortiGate-6000 synchronization
Configuration sync monitor
FortiGate-6000 dashboard widgets
Multi VDOM mode
Multi VDOMÂ mode and the Security Fabric
Multi VDOM mode and HA
Reverting to Multi VDOM mode
Security Fabric and Split-Task VDOM mode
Enabling Split-Task VDOM mode
Split-Task VDOM mode limitations and notes
Default Split-Task VDOM mode configuration
Split-Task VDOM mode and HA
Managing individual FortiGate-6000 management boards and FPCs
Special management port numbers
HA mode special management port numbers
Connecting to individual FPC consoles
Connecting to individual FPC CLIs
Connecting to individual FPC CLIs of the secondary FortiGate-6000 in an HAÂ configuration
Performing other operations on individual FPCs
Load balancing and flow rules
Setting the load balancing method
Flow rules for sessions that cannot be load balanced
Determining the primary FPC
SSL VPN load balancing
FortiOS Carrier GTP load balancing
Optimizing NPU GTP performance
Enabling GTP load balancing
ICMP load balancing
Load balancing TCP, UDP, and ICMP sessions with fragmented packets
Adding flow rules to support DHCP relay
Default configuration for traffic that cannot be load balanced
Showing how the DP3 processor will load balance a session
FortiGate-6000 IPsec VPN
IPsec VPN load balancing
Example FortiGate-6000 IPsec VPN VRFÂ configuration
Troubleshooting
FortiGate-6000 high availability
Introduction to FortiGate-6000 FGCP HA
Before you begin configuring HA
Connect the HA1 and HA2 interfaces for HA heartbeat communication
Default HA heartbeat VLAN triple-tagging
HA heartbeat VLAN double-tagging
Basic FortiGate-6000 HA configuration
Confirming that the FortiGate-6000 HA cluster is synchronized
Viewing more details about HA cluster synchronization
Primary FortiGate-6000 selection with override disabled (default)
Primary FortiGate-6000 selection with override enabled
Failover protection
Device failure
Link failure
FPC failure
SSD failure
Session failover
Primary FortiGate-6000 recovery
HA reserved management interfaces
Virtual clustering
Limitations of FortiGate-6000 virtual clustering
Virtual clustering VLAN/VDOM limitation
Configuring virtual clustering
HA cluster firmware upgrades
Distributed clustering
Modifying heartbeat timing
Changing how long routes stay in a cluster unit routing table
Session failover (session-pickup)
FortiGate-6000 FGSP
FGSP session synchronization options
Creating an HA1/HA2 LAG for FGSP session synchronization
Example FortiGate-6000 FGSP configuration
Inter-cluster session synchronization
Example FortiGate-6000 inter-cluster session synchronization configuration
Standalone configuration synchronization
FortiGate-6000 VRRP HA
Operating a FortiGate-6000
FortiLink support
ECMP support
VDOM-based session tables
IPv4 and IPv6 ECMP load balancing
Enabling auxiliary session support
ICAP support
SSL mirroring support
VXLAN support
Using data interfaces for management traffic
FortiGate-6000 management interface LAG and VLAN support
Setting the MTU for a data interface
More management connections than expected for one device
More ARP queries than expected for one device - potential issue on large WiFi networks
VLAN ID 1 is reserved
Connecting to FPC CLIs using the console port
Firmware upgrade basics
Installing firmware on an individual FPC
Installing firmware from the BIOSÂ after a reboot
Synchronizing the FPCs with the management board
FPC failover in a standalone FortiGate-6000
Troubleshooting an FPC failure
Adjusting global DP3 timers
Changing the FortiGate-6301F and 6501F log disk and RAID configuration
Restarting the FortiGate-6000
Packet sniffing for FPC and management board packets
NMI switch and NMI reset commands
Diagnose debug flow trace for FPC and management board activity
FortiGate-6000 v6.2.7 special features and limitations
FortiGate-6000 v6.2.6 special features and limitations
FortiGate-6000 v6.2.4 special features and limitations
FortiGate-6000 v6.2.3 special features and limitations
FortiGate-6000 config CLI commands
FortiGate-6000 execute CLI commands
Change log
6.2.7
7.0.12
7.0.10
7.0.5
6.4.14
6.4.13
6.4.12
6.4.10
6.4.8
6.4.6
6.4.2
6.2.15
6.2.13
6.2.12
6.2.11
6.2.10
6.2.9
6.2.7
6.2.6
6.2.4
6.2.3
6.0.17
6.0.16
6.0.15
6.0.14
6.0.13
6.0.12
6.0.10
6.0.9
6.0.8
6.0.6
6.0.4
5.6.14
5.6.12
5.6.11
5.6.7
5.4.10
Download PDF
Copy Doc ID
51e571a3-e98a-11eb-97f7-00505692583a:699521
Copy Link
What's New
This section describes what's been added to FortiOS 6.2 FortiGate-6000 releases.
Previous
Next
What's New
This section describes what's been added to FortiOS 6.2 FortiGate-6000 releases.
Previous
Next
Link
PDF
TOC