This topic contains information about FortiGate administration and system configuration that you can do after installing the FortiGate in your network.

Basic system settings


By default, FortiGate has an administrator account with the username admin and no password. See Administrators for more information.

Administrator profiles

An administrator profile defines what the administrator can see and do on the FortiGate. See Administrator profiles for more information.

Password policy

Set up a password policy to enforce password criteria and change frequency. See Password policy for more information.


Physical and virtual interface allow traffic to flow between internal networks, and between the internet and internal networks. See Interfaces for more information.

Advanced system settings


The simple network management protocol (SNMP) allows you to monitor hardware on your network. See SNMP for more information.

DHCP server

You can configure one or more DHCP servers on any FortiGate interface. See DHCP server for more information.


You can use virtual domains (VDOMs) to divide a FortiGate into multiple virtual devices that function independently. See Virtual Domains for more information.

High availability

You can configure multiple FortiGate devices, including private and public cloud VMs, in HA mode. See High Availability for more information.


You can manage certificates on the FortiGate. See Certificates for more information.

Operating modes

A FortiGate or VDOM (in multi-vdom mode) can operate in either NAT/route mode or transparent mode.

NAT/route mode

The FortiGate or VDOM is installed as a gateway or router between multiple networks, such as a private network and the internet. One function of NAT/route mode is to allow the FortiGate to hide the IP addresses on the private network using NAT. NAT/route mode can also be used to connect to multiple ISPs in an SD-WAN setup, and to route traffic between different networks. .

By default, new VDOMs are set to NAT/route operation mode.

See NAT mode for more information.

Transparent mode

The FortiGate or VDOM operates in layer 2 to forward traffic between network devices such as routers, firewalls, and switches. For example. it can be installed inline between a router and a switch to perform security scanning without changing the network topology or modifying the IP addresses. When you add a FortiGate that is in trans