Fortinet black logo
7.2.0

Step 3: Appliance Configuration

Step 3: Appliance Configuration

Configure Basic Settings and Management Interface

  1. Re-connect the Management Computer to Port1.

  2. Open a browser and navigate to the following URL:

    https://192.168.1.99:8443

  3. Login using the Default FortiNAC Admin GUI Credentials

    User: root

    Password: YAMS

  4. The License Key window is displayed:

  5. Do not modify key. Bypass this view by clicking Next.

  6. Read the End User License Agreement. Accept the terms and continue.

  7. Enter a new User ID and Password to use when logging in to the Admin GUI. This user record is locally stored in the server's database. For password requirement details, see Passwords in the Administration Guide. Click Next.

  8. Select the installation method you would like to use.

    Note: We recommend that new users use the Guided Installation. Guided Installation will create a series of Tasks that will help walk through the set up of the product to gain visibility as quickly as possible. Click Next.

  9. Select the customer requirements for the Guided Installation. This creates a widget checklist that shows you whether or not the task has been done.

    Click OK.

    The Config Wizard view will display.

  10. Enter the values based on the definitions in Basic Network Window Field Definitions in the table below.

    Basic Network Window Field Definitions

    FortiNAC CA

    Host Name

    Name of the appliance you are configuring. Host names should contain only letters, numbers or hyphens (-). Uppercase letters are converted to lowercase automatically.

    Note: Do not use nac, isolation, registration, remediation, remotereg, remotescan, vpn, authentication, hub, or deadend. These names are reserved for system use.

    port1 IP Address

    Management IP Address of the appliance you are configuring.

    Default Gateway

    Default Gateway IP address for the appliance you are configuring. A default gateway is the device that passes traffic from the local subnet to devices on other subnets.

    Mask

    Subnet mask for the appliance you are configuring. A subnet is a logical grouping of connected network devices; the mask defines the boundaries of the subnet.

    DNS

    Primary IP Address

    IP address of the Primary DNS Server. This is used in the basic IP network configuration for the appliance.

    Secondary IP Address

    IP address of the Secondary DNS Server. This is used in the basic IP network configuration for the appliance.

    Domain

    Enter your domain name, such as megatech.com or megatech.edu.

    Forwarding DNS for all Isolation Networks

    Forwarding DNS IP Address(es)

    The Forwarding DNS directs hosts to public update sites during registration and remediation as determined by the policy enforcement requirements. Select Use Primary and Secondary DNS to use your existing DNS servers or select Specify to enter a list of alternate DNS servers.

    NTP and Time Zone

    NTP Server

    NTP and Time Zone settings keep the software date and time up-to-date. The NTP Server can be an IP Address or a name, such as pool.ntp.org.

    Time Zone

    Select the time zone for your server.

  11. Select None for Network Type. This will be configured later.

  12. Click Next.

  13. Review settings in the Summary window.

  14. If all information is correct, click Apply.

  15. Reboot or shut down the appliance.

  16. Disconnect the Management Computer from port1.

  17. Connect port1 to the network.

Step 3: Appliance Configuration

Configure Basic Settings and Management Interface

  1. Re-connect the Management Computer to Port1.

  2. Open a browser and navigate to the following URL:

    https://192.168.1.99:8443

  3. Login using the Default FortiNAC Admin GUI Credentials

    User: root

    Password: YAMS

  4. The License Key window is displayed:

  5. Do not modify key. Bypass this view by clicking Next.

  6. Read the End User License Agreement. Accept the terms and continue.

  7. Enter a new User ID and Password to use when logging in to the Admin GUI. This user record is locally stored in the server's database. For password requirement details, see Passwords in the Administration Guide. Click Next.

  8. Select the installation method you would like to use.

    Note: We recommend that new users use the Guided Installation. Guided Installation will create a series of Tasks that will help walk through the set up of the product to gain visibility as quickly as possible. Click Next.

  9. Select the customer requirements for the Guided Installation. This creates a widget checklist that shows you whether or not the task has been done.

    Click OK.

    The Config Wizard view will display.

  10. Enter the values based on the definitions in Basic Network Window Field Definitions in the table below.

    Basic Network Window Field Definitions

    FortiNAC CA

    Host Name

    Name of the appliance you are configuring. Host names should contain only letters, numbers or hyphens (-). Uppercase letters are converted to lowercase automatically.

    Note: Do not use nac, isolation, registration, remediation, remotereg, remotescan, vpn, authentication, hub, or deadend. These names are reserved for system use.

    port1 IP Address

    Management IP Address of the appliance you are configuring.

    Default Gateway

    Default Gateway IP address for the appliance you are configuring. A default gateway is the device that passes traffic from the local subnet to devices on other subnets.

    Mask

    Subnet mask for the appliance you are configuring. A subnet is a logical grouping of connected network devices; the mask defines the boundaries of the subnet.

    DNS

    Primary IP Address

    IP address of the Primary DNS Server. This is used in the basic IP network configuration for the appliance.

    Secondary IP Address

    IP address of the Secondary DNS Server. This is used in the basic IP network configuration for the appliance.

    Domain

    Enter your domain name, such as megatech.com or megatech.edu.

    Forwarding DNS for all Isolation Networks

    Forwarding DNS IP Address(es)

    The Forwarding DNS directs hosts to public update sites during registration and remediation as determined by the policy enforcement requirements. Select Use Primary and Secondary DNS to use your existing DNS servers or select Specify to enter a list of alternate DNS servers.

    NTP and Time Zone

    NTP Server

    NTP and Time Zone settings keep the software date and time up-to-date. The NTP Server can be an IP Address or a name, such as pool.ntp.org.

    Time Zone

    Select the time zone for your server.

  11. Select None for Network Type. This will be configured later.

  12. Click Next.

  13. Review settings in the Summary window.

  14. If all information is correct, click Apply.

  15. Reboot or shut down the appliance.

  16. Disconnect the Management Computer from port1.

  17. Connect port1 to the network.