Add Fortigate 7 in Eve ng | Fortigate Firewall Training

Video Statistics and Information

Video
Captions Word Cloud
Reddit Comments
Captions
thank you [Music] hello and welcome everyone now in this lecture I am going to show you the uh process of adding the 40 Os or the 40 gate firewall in evng now that you have you know how to um uh what are you saying install the evng let's move on to importing the um 40 US version 7 in the uh in the event okay so for example now right now I am inside the event G and I have already the um version that I've added is Let Me Close the lab so if I do like this or let's just keep it here and let me show you that what I have added so I have already added the 40 gate 7.2.1 and 7.0.3 so I'll show you to um how to add a for ticket from Seven Dot 0 maybe some other version and then I will show you that we will have three versions here and also I have already uh shown you how to add the 7.2.1 in the previous video so yeah the difference would be obviously uh with the 7.0 version you don't have to activate the eval licenses but with the 40 gig seven or two version you have to activate the eval license I have a previous video wherein I have shown you how to add the 40 gate 7.2.1 and how to activate the eval as well so the process Remains the Same but in the 7.0 version you don't need to um activate eval it comes out of the box okay so we will look into more details into that okay so in order to have the um image imported to an evng first thing you need to do is to download the image right so to download the image the the best way is to go to the for the um net website itself for example this is the one so you can say support Dot support dot 40 net.com is the website where you should go okay and then login and then if you don't have a username password you have to register it here I have one I will log in hopefully the password is right okay I will go here um yeah um I'm inside this now this would be the portal where you would see all your products okay so they give you a cool dashboard here and you can see how many uh products you have registered and all now if you are a organization you would have a lot of assets here like under products you would go here and you would see all your firewalls registered here and you would see all the details of all the firewalls here if you want to register you can register here I've shown you the same um uh I mean process how to register a firewall when we uh you activate the evaluation on 7.2.1 now to download the image you have to go here Services um sorry not Services support and then we may images right now when you go here in the VM images you have to download the 7.2 uh version now I I mean they do have a lot of products here right they have the 40 analyzer they have the 40 manager they have the ADC which is application delivery controller it's like a load balancer they have the 40 manager as I said it is the um I mean Central management of all the party gate firewalls and then do they do also have the 40 web now uh what we need right now is the 40 gate firewall and then you have to select the platform so for me it is uh uh evng is basically KVM based platform if you are going for say for example VMware in that case you would have a different extension of file that you need to be uh need to download right so let's go here and look in the platform so you have the early Cloud if you're running the the firewall in the Le cloud and if you're running on the public Cloud right and if you're running on AWS uh then you can go and select the AWS but for me it is you can also go for hyper-v you can also go for KVM which is in our case the the the condition and then you have Oracle Rackspace which is a private cloud services and VMware asxi so I am going for KVM and I will go for the version which is 7.0.9 now you can see I have 7.0.3 I guess uh if I go here yeah and if you see yeah 703 we will um download this and add the seven zero nine here so I'll go here and then you have to uh go for the new deployment right you have upgrade you have new deployment for KVM right so you can go either to this one or this one the best part is that uh the um file is very small and uh it's it's a it's very light right so I can go to the new deployment either this or this okay so let's go for this one I will download this and and once this is downloaded I need to extract this exactly so uh before that I can also go to the um the uh evng website I need to go okay how to how to section is where I need to go and inside how to section what I need to do is wait a second I want to show you how to add this now the file has been downloaded I can go to my downloads folder uh okay so I can see this is downloaded I'll right click and extract this to a folder and inside that folder I would see a qq2 file right now I have to go to um Google and then I will go evng once I'm in the evng I'll go to the evng website here or you can say even the naming which is what I wanted to show you even the chemo namings and there is seems to be some problem with the website or maybe I have a problem with my internet okay basically what you need to do is once you have your email I have my evng in 101 I will go and do a putty to the the VM which is 192 168 1.101 Port 22 and I will do a SSH and open right and yes and the default is root and sorry the default is root and Ebe and when I'm inside this I can um I mean one thing is to have SSH and then one thing is you need to have a win SCP and you need to login to the file system of your pvng192168.1.101 a root and if Eve done now once you are inside this um say yes once you are inside this you need to go here and and you need to go to the opt folder unit lab add-ons and chemo this is where you have to store the file now you should save the file like this 40 net then basically it's the 40 net um hyphen this is what you need for the folder so I'll create new directory here with this name and let's say this is 7.0.9 right so I'll just save it now inside that you need to have a virtue.q call this is the name that you need to have okay I'll just copy this and I'll go here and in in this um 0 I need to go into the downloads see um let's see okay let's go to desktop and then I need to go to basically the downloads um so I go to C basically and then up admin and I need to go to downloads and this one and this I will just drag and drop the file here and wait for this to completely copy inside the file system of the event okay once this is inside the file system of evng now I have to rename it to the um the mentioned um file name right virtual.q call instead of having this as um the default 40 OS dot Q cow it should be virtual Dot so I will go here and click on rename and paste it here and that's it so after this I have to copy um and paste a file of fixed permissions right Eve Eng fix permission so this is the command that I need I'll copy this and I'll go to the CLI and paste it I'll do it once more just in case right so okay done that's all that's all I need to do now I can go here let's refresh once more just to yeah and a node and then go to 40 net which is which is here here this one now I would have a 7.0.9 now I will add one firewall just to test it and I will add a network here and it will be on the management cloud and then I'll connect the port one to the cloud and then I'll turn on I mean to be safe you can just wipe this once and then start the machine right now let's wait for the machine to um initialize and when I double click and open this in the secure CRT um the first thing is um it will ask for the username and password now by default there is username of admin and which has no password so you can see the serial number of the file uh the firewall sorry and you can just um and hit enter on the password and it will ask you for the new password so you need to set the new password so I'll uh enter admin as the username and hit enter now where when it asks for the password I'll just hit enter and it'll say that you need to enter a new password so I'll hit admin as well here and confirm the same password so now I am inside the what I'm inside the uh system right so I've logged into the um firewall now now um to get the interface configurations what you need to specify is the command is get system this system and then you have interface sorry interface physical is the command and you can see by default on Port 1 the mode is enabled as DHCP we need to change this okay even though there's a password there so I mean there's an IP address there I if I go here and try to Ping this IP ping 192 168 1.5 which is uh how which is what it has taken on the DHCP fold this should be 5 this is the other firewall that I am here and let me go and do an admin and oh sorry admin and admin okay yeah uh so this that is the difference between 7.0.2 and 3 and 2 0.9 that means uh in in basically uh 7.0.2 which I am using here the this one yeah this one by default the HTTP is not enabled and let me show you how to see that if you go on the CLI which is on my secure CRT here so I'm in this firewall the one that we added you can say config um system interface right and then here you can say show now all the configurations of all the interfaces will be shown what we are interested is in the port 1 configuration and you can see set hello access is being https SSH HTTP which is in the case of 7.09 and 7.2 series of 40 years OS for Ticket firewalls right now in this case it is enabled by default so that's why I am able to go to the firewall now let's um change now you can continue using this but I want to change the IP address so I'll go here I'm already in the system I will say um I mean I'm in the config system interface here now I just need to edit the port one right Port one that is how you do it so now I'm inside the configuration of Port one if I do only show I will see only the configuration of Port 1 here okay uh it works like that now to change this you have to first of all set the mode from DHCP to static right and then set the IP set the IP um to the desired IP so I'll say 192 168 1.53 24 enter now if you want to change the allow access you can do that but remember you have it doesn't append you have to completely copy all others if you just do set a low access ping that means you will be allow only pin and it will be overwritten and the others other services will not be allowed right so um let's go on and now I don't need to do the HTTP here so um now you just hit enter or next I mean end or next and you come out of this now if you refresh this um it is not going to work because I've changed the IP so I need to go and say 53 and this would basically come here and admin and admin am I an admin done now I will do this as begin and I will say I don't want to change the host name and optimal um settings right I want to not see this again and here I am the build is version 7.0.9 and if you go to system you should see all the firmware details if you go here and the build is this one which we added recently right and the 40 gig um 40 gate uh God right 40 God is Not basically license so we'll say um your uh these things are not supported only the firewall VM is been licensed and and you have a limitation of this thing so you cannot have more than 2 GB and um 997 MB okay so remember that um so 2GB Rams One Core this is the max allowed here one by one CPU right if you change this then it will ask for the license okay so that is how you add the uh 40 OS 7.0.9 in the um uh evng so that's all for this uh lecture I will see you in the next lecture thank you foreign [Music]
Info
Channel: Zabqureshi's Networking Lessons
Views: 2,414
Rating: undefined out of 5
Keywords: forti tip, fortigate basic configuration, fortigate, fortinet, training, fortinet firewall, fortigate firewall training, fortinet firewall tutorial, fortigate installation, fortinet firewall videos, basic setup, fortigate cli commands, basic fortigate configuration, basic fortigate setup, firewall policy, firewall rules, fortigate how to, configuration how to, 2019, Beginners tutorial, checkpoint, #fortigate, #firewall, eve-ng, fortigate on eve-ng, basic setting fortigate
Id: DFlgjnQFG00
Channel Id: undefined
Length: 16min 42sec (1002 seconds)
Published: Mon Jan 09 2023
Related Videos
Note
Please note that this website is currently a work in progress! Lots of interesting data and statistics to come.