{"id":2796,"date":"2024-02-02T11:18:07","date_gmt":"2024-02-02T16:18:07","guid":{"rendered":"https:\/\/increasec.com\/?p=2796"},"modified":"2024-05-07T10:59:57","modified_gmt":"2024-05-07T14:59:57","slug":"fortigate-new-firewall-setup","status":"publish","type":"post","link":"https:\/\/increasec.com\/?p=2796","title":{"rendered":"Fortigate New Firewall setup"},"content":{"rendered":"\n<p>Mostly for me to remember what to do<\/p>\n\n\n\n<p>Plug laptop into Lan1,  surf to https:\/\/192.168.1.99<\/p>\n\n\n\n<p>login with admin and NO PASSWORD, should be prompted to change the password<br>Login again and set the time zone<br>Create a 2nd account &amp; record the password in BitWarden<\/p>\n\n\n\n<p>System, Firmware, Upgrade<br>if FG displays error &#8220;Image Upgrade Failed&#8221; <br>   Network, Wan1, DNS, change the first DNS server to 8.8.8.8<\/p>\n\n\n\n<p>Create 2 Interface Groups named Private and Public<br>Add interfaces to them so the rule set can be simple and not full of duplicate entries<br>To avoid locking yourself out, set the DMZ port to be LAN +DHCP and allow HTTP config<br>move all rules from an interface to an Interface Group BEFORE being able move the Interface to an Interface Group<br><\/p>\n\n\n\n<p>Create Geo groups for NorthAmerica and BadGeo (Russia, China, N.Korea)<br>Create rules that Block BadGeo, do minimal filtering for NorthAmerica, Normal Web filters for the default.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Mostly for me to remember what to do Plug laptop into Lan1, surf to https:\/\/192.168.1.99 login with admin and NO PASSWORD, should be prompted to change the passwordLogin again and&#8230;<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1],"tags":[87,86],"class_list":["post-2796","post","type-post","status-publish","format-standard","hentry","category-uncategorised","tag-fortigate","tag-fortinet"],"_links":{"self":[{"href":"https:\/\/increasec.com\/index.php?rest_route=\/wp\/v2\/posts\/2796","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/increasec.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/increasec.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/increasec.com\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/increasec.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=2796"}],"version-history":[{"count":6,"href":"https:\/\/increasec.com\/index.php?rest_route=\/wp\/v2\/posts\/2796\/revisions"}],"predecessor-version":[{"id":2886,"href":"https:\/\/increasec.com\/index.php?rest_route=\/wp\/v2\/posts\/2796\/revisions\/2886"}],"wp:attachment":[{"href":"https:\/\/increasec.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=2796"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/increasec.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=2796"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/increasec.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=2796"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}