Change Log 5 Getting started 6 Registration 6 Basic configuration 6 Resources 7 Administrator access 9 Management network 9 User authentication for management network access 9 Who can access the FortiGate 9 What can administrators access 10 How can users access the FortiGate 10 Administrative settings 10 Day to day operations 12 Configuration changes 12 Policy configuration changes 13 Logging and reporting 14 Performance monitoring 14 Identity and access management 15 Certificates 17 Certificate usage 17 Security profiles 19 Opened ports for Authentication Override在Web滤清器中替换消息中20 SSL/TLS深度检查21迁移23使用配置文件手动迁移配置24远程访问26 SSL VPN 26 IPSEC VPN 27非VPN 27非VPN远程访问27高可用性和高可用性28高可用性28高可用性28高可用性28
Change Log 5 Getting started 6 Registration 6 Basic configuration 6 Resources 7 Administrator access 9 Management network 9 User authentication for management network access 9 Who can access the FortiGate 9 What can administrators access 10 How can users access the FortiGate 10 Administrative settings 10 Day to day operations 12 Configuration changes 12 Policy configuration changes 13 Logging and reporting 14 Performance monitoring 14 Identity and access management 15 Certificates 17 Certificate usage 17 Security profiles 19 Opened ports for Authentication Override在Web滤清器中替换消息中20 SSL/TLS深度检查21迁移23使用配置文件手动迁移配置24远程访问26 SSL VPN 26 IPSEC VPN 27非VPN 27非VPN远程访问27高可用性和高可用性28高可用性28高可用性28高可用性28
Change Log 4 What's new 5 FortiOS 7.4.4 5 FortiOS 7.4.1 5 FortiOS 7.4.0 5 Supported RFCs 6 BGP 6 Cryptography 7 DHCP 8 Diffserv 8 DNS 8 ICMP 9 IP 9 IP multicast 9 IPsec 9 IPv4 10 IPv6 10 IS-IS 11 LDAP 11 NAT 11 OSPF 11 PPP 12 RADIUS 12 RIP 12 SFTP 12 SIP 13 SNMP 13 SSH 14 SSL 14 TACACS+ 14 TCP 14 TLS 14 VPN 15无线15其他协议15其他16
Change Log 4 What's new 5 FortiOS 6.4.0 5 Supported RFCs 6 BGP 6 Cryptography 6 DHCP 7 Diffserv 8 DNS 8 ICMP 8 IP 9 IP multicast 9 IPsec 9 IPv4 9 IPv6 10 IS-IS 10 LDAP 11 NAT 11 OSPF 11 PPP 12 RADIUS 12 RIP 12 SFTP 12 SIP 13 SNMP 13 SSH 13 SSL 14 TCP 14 TLS 14 VPN 14无线15其他协议15其他15
您可以通过使用ZTNA访问权限控制规则为软件-AS-AS-Service(SaaS)流量来配置Fortigate Zero Trust网络访问(ZTNA)访问代理,以充当Inline Cloud Access Security Broker(CASB)。CASB坐在用户及其云服务之间,以在访问基于云的资源时执行安全策略。Fortios 7.2.1及以后的版本支持ZTNA Inline CASB用于SaaS应用程序访问。本主题提供有关受支持应用程序的信息。
零信任网络访问(ZTNA)是一种访问控制方法,它使用客户端设备标识,身份验证和安全姿势标签来提供基于角色的应用程序访问。它使管理员可以灵活地管理网络本地用户和网络远程用户的网络访问。仅在设备验证后才授予对应用程序的访问,对用户的身份进行身份验证,授权用户,然后使用安全姿势标签执行基于上下文的姿势检查。此外,安全姿势标签可以在VPN连接中用于隧道机构之前的执行。
更改log 8什么是新的9新的是Fortigate 6000f 7.4.7的新功能。 FortiGate-6000 overview 11 Front panel interfaces 12 FortiGate-6000 schematic 12 Interface groups and changing data interface speeds 14 FortiGate 6000F series hardware generations 15 FortiGate 6001F model licensing 15 Applying your FortiGate 6001F FPC subscription license 15 Activating your FortiGate 6001F FPC perpetual license 16 Verifying your FortiGate 6001F FPC subscription and perpetual licenses 16 What to expect when your subscription license expires 16 Getting started with FortiGate 6000F series 18 Confirming startup status 19 FortiGate 6000F and the Security Fabric 20 Configuration synchronization 20 Confirming that FortiGate-6000 components are synchronized 21 Viewing more details about FortiGate-6000 synchronization 22 Cluster Status dashboard widget 23 FortiGate 6000F dashboard widgets 24 Cluster status 24 Resource Usage 24 Sensor Information 24 Multi VDOM mode 24 FortiGate-6000 7.4.7 incompatibilities and limitations 24 Remote console limitations 25 Default management VDOM 25 Maximum number of LAGs and interfaces per LAG 25 High Availability 25 FortiOS features that are not supported by FortiGate-6000 7.4.7 25 IPsec VPN tunnels terminated by the FortiGate 6000F 26 Traffic shaping and DDoS policies 27 FortiGuard web filtering and spam filtering queries 27 Web filtering quotas 27新部署连接测试的特别通知27
Forticlient Universal ZTNA与Fortios一起使用,无论用户是本地还是遥控器,都可以安全地访问应用程序。每个会话均使用从ForticLient到Fortios ZTNA应用程序网关进行自动加密的隧道,用于用户和设备身份验证。此外,ForticLient执行近近实时端点姿势检查,该检查使ZTNA应用程序网关可以基于动态端点姿势验证提供自适应实时访问控制。您还可以使用多因素身份验证来提供额外的安全层。使用Universal ZTNA,组织不仅受益于更安全和更好的远程访问,而且还可以为安全访问在本地和远程用户的应用程序提供一致的安全性和用户体验,而无论端点位置如何。
更改日志5安全驱动的网络7 SD-WAN 7 FORTIANALYZER SD-WAN监视仪表板7增强的SD-WAN报告13安全SD-WAN评估报告6.4.2 15动态云安全性18公共云 28 IAM 29 SAML Fabric SSO 29 AI-driven Security Operations 34 SOC automation 35 Attach reports to incidents 35 Automation Playbooks 39 Add comments to incidents 46 Expanded incident analysis page 48 FortiSOC dashboards 52 FortiOS Connector 53 EMS Connector 57 Normalized Fabric logs 63 Incidents with multiple endpoints and users 6.4.2 67 Default playbook template improvements 6.4.1 68 Incident page improvement 6.4.1 71本地报告操作的过滤器6.4.2 77 SOC订阅许可6.4.1 78尝试将其输出Fortisoc 6.4.2 6.4.2 80来自EMS连接器的脆弱性和软件清单数据6.4.2 82 Fortimail Connector 6.4.2 86归一化日志上的固定日志的警报6.4.3 89报告6.4.3 89正常的日志6.4.3 92 fortig fortor 6.4.3 fortor 6.4.3 94 fortor 6.4.3 94 fortor 64 fortor 6.4.3 94 fortor 64 fortor 64 fortor 64 fortor 64 4. 34 4.服务6.4.6 98高级威胁保护102 IOC重新扫描事件102 fortideceptor记录106事件处理程序的独特计数6.4.2 108