Fortinet white logo
Fortinet white logo

Administration Guide

Setting up FortiProxy for management access

Setting up FortiProxy for management access

After you receive your FortiProxy, open the box, connect the cables for management and internet access, and use a management computer to access the FortiProxy GUI.

For information about setting up FortiProxy on hypervisors, such as FortiProxy-VM on ESXi, KVM, Hyper-V, and so on, go to FortiProxy Public Cloud or FortiProxy Private Cloud and follow the deployment guide for your hypervisor and cloud computing platform, for example, Microsoft Hyper-V Deployment Guide.

To set up FortiProxy for initial management access:
  1. Unpack the FortiProxy box, and locate the following items:

    • FortiProxy device

    • Power cable

    • Ethernet cable

    You will also need to provide the following items:

    • Second Ethernet cable. Only one Ethernet cable is provided to connect the FortiProxy to a management computer. Locate a second Ethernet cable to connect the FortiProxy to a port for internet access.

    • Management computer to access the FortiProxy GUI

  2. Use the power cable to connect the FortiProxy to a power source.

  3. Configure a port for dedicated management access using the set dedicated-to management option under config system interface. This is called out-of-band management and is recommended.

    Alternatively, you can configure in-band management by using the Internal or LAN interface for FortiProxy management, in which case the management traffic is shared with internal traffic. This is not recommended.

  4. Use an Ethernet cable to connect the management port to a management computer. For information about your FortiProxy hardware model, go to FortiProxy Hardware Guides.

  5. Use a second Ethernet cable to connect the WAN on the FortiProxy to an upstream router, switch, or modem with access to the internet. You can select an interface of your choice for the WAN connection as the FortiProxy has no dedicated WAN interfaces.

    Internet access is available when the FortiProxy model has addressing mode set to DHCP by default on the WAN interface, and the WAN interface is connected to a network with a DHCP server assigning the correct IP and gateway for internet access. If these conditions are not met, then internet access is not available after connecting your WAN interface. See Configuring basic settings.

  6. On the management computer, assign an address in the 192.168.1.0/24 network.

  7. In a web browser, go to https://192.168.1.99 and enter the default user name, admin, and leave the password field blank.

    By default, the management interface or the internal interface is configured to allow HTTPS access with the IP address 192.168.1.99.

    The GUI is displayed in your browser.

  8. Complete the basic configurations. See Configuring basic settings.

Setting up FortiProxy for management access

Setting up FortiProxy for management access

After you receive your FortiProxy, open the box, connect the cables for management and internet access, and use a management computer to access the FortiProxy GUI.

For information about setting up FortiProxy on hypervisors, such as FortiProxy-VM on ESXi, KVM, Hyper-V, and so on, go to FortiProxy Public Cloud or FortiProxy Private Cloud and follow the deployment guide for your hypervisor and cloud computing platform, for example, Microsoft Hyper-V Deployment Guide.

To set up FortiProxy for initial management access:
  1. Unpack the FortiProxy box, and locate the following items:

    • FortiProxy device

    • Power cable

    • Ethernet cable

    You will also need to provide the following items:

    • Second Ethernet cable. Only one Ethernet cable is provided to connect the FortiProxy to a management computer. Locate a second Ethernet cable to connect the FortiProxy to a port for internet access.

    • Management computer to access the FortiProxy GUI

  2. Use the power cable to connect the FortiProxy to a power source.

  3. Configure a port for dedicated management access using the set dedicated-to management option under config system interface. This is called out-of-band management and is recommended.

    Alternatively, you can configure in-band management by using the Internal or LAN interface for FortiProxy management, in which case the management traffic is shared with internal traffic. This is not recommended.

  4. Use an Ethernet cable to connect the management port to a management computer. For information about your FortiProxy hardware model, go to FortiProxy Hardware Guides.

  5. Use a second Ethernet cable to connect the WAN on the FortiProxy to an upstream router, switch, or modem with access to the internet. You can select an interface of your choice for the WAN connection as the FortiProxy has no dedicated WAN interfaces.

    Internet access is available when the FortiProxy model has addressing mode set to DHCP by default on the WAN interface, and the WAN interface is connected to a network with a DHCP server assigning the correct IP and gateway for internet access. If these conditions are not met, then internet access is not available after connecting your WAN interface. See Configuring basic settings.

  6. On the management computer, assign an address in the 192.168.1.0/24 network.

  7. In a web browser, go to https://192.168.1.99 and enter the default user name, admin, and leave the password field blank.

    By default, the management interface or the internal interface is configured to allow HTTPS access with the IP address 192.168.1.99.

    The GUI is displayed in your browser.

  8. Complete the basic configurations. See Configuring basic settings.