Buenas,
he montado un piloto con un fortigate 50 B para que me haga de sniffer, pero no consigo resultados.
No estoy seguro de si este equipo puede soportar este tipo de carga.
El puerto en span o modo monitor va a la WAN1 y por el internal 1 tengo conectado el forti a una vlan de gestión.
Alcanzo la IP de gestión a nivel de ping pero es inaccesible mientras el puerto monitor este conectado.
Desconozco si para dar este uso al forti es necesario realizar algún tipo de configuración previa.
EL Firewall esta reseteado a nivel de fabrica excepto la IP de gestión, el nombre el gateway, esta en modo transparente y no se ha tocado apenas nada mas.
Alguna pista?
Fortigate 50B como sniffer
Re: Fortigate 50B como sniffer
Hola, revisaste esto donde aparece el transparent:
[Debes identificarte para poder ver enlaces.]
Transparent mode
To switch from NAT/route mode to transparent mode
1. Go to System > Status, select Change beside Operation Mode, and select OK.
2. Change the IP address of the management computer to 10.10.10.2 and use
Internet Explorer to browse to [Debes identificarte para poder ver enlaces.].
To configure the FortiGate-100 using the Setup Wizard, select the Easy Setup Wizard
button and follow the prompts.
To change the administrator password
1. Go to System > Admin > Administrators.
2. Select Change Password for the admin administrator and enter a new password.
To configure the management interface
1. Go to System > Network > Management.
2. Enter the Management IP address and netmask that you recorded above.
3. Select administrative access options if required and select OK.
To configure the Primary and Secondary DNS server IP addresses
1. Go to System > Network > DNS, enter the Primary and Secondary DNS IP
addresses that you recorded above and select Apply.
To configure a Default Gateway
1. Go to System > Network > Management.
2. Set Default Gateway to the Default Gateway IP address that you recorded above
and select OK
no te olvides de las politicas de firewall
saludos
[Debes identificarte para poder ver enlaces.]
Transparent mode
To switch from NAT/route mode to transparent mode
1. Go to System > Status, select Change beside Operation Mode, and select OK.
2. Change the IP address of the management computer to 10.10.10.2 and use
Internet Explorer to browse to [Debes identificarte para poder ver enlaces.].
To configure the FortiGate-100 using the Setup Wizard, select the Easy Setup Wizard
button and follow the prompts.
To change the administrator password
1. Go to System > Admin > Administrators.
2. Select Change Password for the admin administrator and enter a new password.
To configure the management interface
1. Go to System > Network > Management.
2. Enter the Management IP address and netmask that you recorded above.
3. Select administrative access options if required and select OK.
To configure the Primary and Secondary DNS server IP addresses
1. Go to System > Network > DNS, enter the Primary and Secondary DNS IP
addresses that you recorded above and select Apply.
To configure a Default Gateway
1. Go to System > Network > Management.
2. Set Default Gateway to the Default Gateway IP address that you recorded above
and select OK
no te olvides de las politicas de firewall
saludos
NSE 7 – Fortinet Network Security Architect
NSE 5 - Network Security Analyst
NSE 5 - Network Security Analyst
Re: Fortigate 50B como sniffer
Sisi todos esos pasos estaban bien.
Al final he conseguido hacerlo:
viewtopic.php?f=10&t=124&p=6244#p6244
Gracias por la ayuda!!
Al final he conseguido hacerlo:
viewtopic.php?f=10&t=124&p=6244#p6244
Gracias por la ayuda!!
Re: Fortigate 50B como sniffer
ok, raro entonces
si lo arreglaste mejor.
saludos
si lo arreglaste mejor.
saludos
NSE 7 – Fortinet Network Security Architect
NSE 5 - Network Security Analyst
NSE 5 - Network Security Analyst