<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Routing archivos - RAGASYS SISTEMAS</title>
	<atom:link href="https://blog.ragasys.es/category/routing/feed" rel="self" type="application/rss+xml" />
	<link>https://blog.ragasys.es/category/routing</link>
	<description>Soporte técnico para las TIC</description>
	<lastBuildDate>Thu, 30 Apr 2026 11:23:53 +0000</lastBuildDate>
	<language>es</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	

<image>
	<url>https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/05/logoRGS_18_05_2020.png?fit=32%2C32&#038;ssl=1</url>
	<title>Routing archivos - RAGASYS SISTEMAS</title>
	<link>https://blog.ragasys.es/category/routing</link>
	<width>32</width>
	<height>32</height>
</image> 
<site xmlns="com-wordpress:feed-additions:1">111701399</site>	<item>
		<title>Configuración Fortigate – VPN IPSEC de Acceso Remoto</title>
		<link>https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto</link>
					<comments>https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto#comments</comments>
		
		<dc:creator><![CDATA[Jose Ramon Ramos Gata]]></dc:creator>
		<pubDate>Thu, 05 Mar 2026 08:42:26 +0000</pubDate>
				<category><![CDATA[Accesos remotos]]></category>
		<category><![CDATA[Firewall]]></category>
		<category><![CDATA[Forticlient]]></category>
		<category><![CDATA[Fortigate]]></category>
		<category><![CDATA[Fortinet]]></category>
		<category><![CDATA[IPsec]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[Routing]]></category>
		<category><![CDATA[TIC]]></category>
		<category><![CDATA[VPN]]></category>
		<category><![CDATA[Routing & Switching]]></category>
		<guid isPermaLink="false">https://blog.ragasys.es/?p=21841</guid>

					<description><![CDATA[<p>Hola a tod@s. En este post vamos a ver como configurar una VPN IPSEC de acceso remoto en un firewall Fortigate, con este tipo de VPN usando el protocolo IPSec nos podemos conectar desde cualquier equipo con conexión a Internet&#8230; <a href="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto" class="more-link">Continuar leyendo <span class="meta-nav">&#8594;</span></a></p>
<p>La entrada <a href="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto">Configuración Fortigate – VPN IPSEC de Acceso Remoto</a> se publicó primero en <a href="https://blog.ragasys.es">RAGASYS SISTEMAS</a>.</p>
]]></description>
										<content:encoded><![CDATA[<p>Hola a tod@s.</p>
<p>En este post vamos a ver como configurar una VPN IPSEC de acceso remoto en un firewall Fortigate, con este tipo de VPN usando el protocolo IPSec nos podemos conectar desde cualquier equipo con conexión a Internet hacia nuestra red interna, dónde todo el tráfico irá encriptado.</p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra1.png?ssl=1" data-lbwps-width="1109" data-lbwps-height="618" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra1.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21842" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra1#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra1.png?fit=1109%2C618&amp;ssl=1" data-orig-size="1109,618" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra1" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra1.png?fit=640%2C357&amp;ssl=1" class="aligncenter size-full wp-image-21842" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra1.png?resize=640%2C357&#038;ssl=1" alt="" width="640" height="357" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra1.png?w=1109&amp;ssl=1 1109w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra1.png?resize=595%2C332&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra1.png?resize=960%2C535&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra1.png?resize=768%2C428&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Lo primero que vamos a realizar será, crear los usuarios locales que accederán a través de la VPN:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra2.png?ssl=1" data-lbwps-width="1650" data-lbwps-height="392" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra2-1536x365.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21843" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra2#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra2.png?fit=1650%2C392&amp;ssl=1" data-orig-size="1650,392" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra2" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra2.png?fit=640%2C152&amp;ssl=1" class="aligncenter size-full wp-image-21843" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra2.png?resize=640%2C152&#038;ssl=1" alt="" width="640" height="152" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra2.png?w=1650&amp;ssl=1 1650w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra2.png?resize=595%2C141&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra2.png?resize=960%2C228&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra2.png?resize=768%2C182&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra2.png?resize=1536%2C365&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra2.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para una correcta administración, los usuarios que nos hemos creado anteriormente los vamos a anidar en un grupo:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra3.png?ssl=1" data-lbwps-width="1692" data-lbwps-height="444" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra3-1536x403.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21844" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra3#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra3.png?fit=1692%2C444&amp;ssl=1" data-orig-size="1692,444" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra3" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra3.png?fit=640%2C168&amp;ssl=1" class="aligncenter size-full wp-image-21844" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra3.png?resize=640%2C168&#038;ssl=1" alt="" width="640" height="168" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra3.png?w=1692&amp;ssl=1 1692w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra3.png?resize=595%2C156&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra3.png?resize=960%2C252&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra3.png?resize=768%2C202&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra3.png?resize=1536%2C403&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra3.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Una vez creados los usuarios y grupos, vamos a crearnos el túnel IPSec, para ello, accedemos a <strong>VPN &gt; Túneles Ipsec &gt; Crear nuevo &gt; IPsec Tunnel</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra4.png?ssl=1" data-lbwps-width="1617" data-lbwps-height="376" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra4-1536x357.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21845" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra4#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra4.png?fit=1617%2C376&amp;ssl=1" data-orig-size="1617,376" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra4" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra4.png?fit=640%2C149&amp;ssl=1" class="aligncenter size-full wp-image-21845" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra4.png?resize=640%2C149&#038;ssl=1" alt="" width="640" height="149" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra4.png?w=1617&amp;ssl=1 1617w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra4.png?resize=595%2C138&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra4.png?resize=960%2C223&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra4.png?resize=768%2C179&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra4.png?resize=1536%2C357&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra4.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre <strong>Configuración de VPN</strong>, le indicamos un <strong>nombre</strong> y seleccionamos <strong>Acceso remoto, Siguiente</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra5.png?ssl=1" data-lbwps-width="1669" data-lbwps-height="398" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra5-1536x366.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21846" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra5#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra5.png?fit=1669%2C398&amp;ssl=1" data-orig-size="1669,398" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra5" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra5.png?fit=640%2C153&amp;ssl=1" class="aligncenter size-full wp-image-21846" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra5.png?resize=640%2C153&#038;ssl=1" alt="" width="640" height="153" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra5.png?w=1669&amp;ssl=1 1669w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra5.png?resize=595%2C142&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra5.png?resize=960%2C229&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra5.png?resize=768%2C183&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra5.png?resize=1536%2C366&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra5.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre <strong>Autenticación</strong>, le indicamos la interface de entrada, el método de autenticación por llave compartida y el grupo de usuario, este grupo lo eliminaremos de la configuración de las fases más tarde, ya que las políticas de acceso irán configuradas con grupos y no sería necesario, <strong>Siguiente</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra6.png?ssl=1" data-lbwps-width="1639" data-lbwps-height="416" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra6-1536x390.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21847" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra6#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra6.png?fit=1639%2C416&amp;ssl=1" data-orig-size="1639,416" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra6" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra6.png?fit=640%2C163&amp;ssl=1" class="aligncenter size-full wp-image-21847" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra6.png?resize=640%2C162&#038;ssl=1" alt="" width="640" height="162" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra6.png?w=1639&amp;ssl=1 1639w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra6.png?resize=595%2C151&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra6.png?resize=960%2C244&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra6.png?resize=768%2C195&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra6.png?resize=1536%2C390&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra6.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre <strong>Política y Enrutamiento</strong>, vamos a configurar esta política, que más tarde vamos a eliminar, ya que iremos aplicando políticas más granulares y restrictivas, habilitamos el Split Tunnel, esto hará que los usuarios que se conecten a la VPN, tengan la salida a Internet por su propia conexión y no por la nuestra, <strong>Siguiente</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra7.png?ssl=1" data-lbwps-width="1637" data-lbwps-height="459" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra7-1536x431.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21848" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra7#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra7.png?fit=1637%2C459&amp;ssl=1" data-orig-size="1637,459" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra7" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra7.png?fit=640%2C179&amp;ssl=1" class="aligncenter size-full wp-image-21848" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra7.png?resize=640%2C179&#038;ssl=1" alt="" width="640" height="179" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra7.png?w=1637&amp;ssl=1 1637w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra7.png?resize=595%2C167&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra7.png?resize=960%2C269&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra7.png?resize=768%2C215&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra7.png?resize=1536%2C431&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra7.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre <strong>Opciones de cliente</strong>, le indicamos que guarde la contraseña, y habilitamos el Keep Alive, <strong>Crear</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra8.png?ssl=1" data-lbwps-width="1645" data-lbwps-height="413" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra8-1536x386.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21849" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra8#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra8.png?fit=1645%2C413&amp;ssl=1" data-orig-size="1645,413" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra8" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra8.png?fit=640%2C161&amp;ssl=1" class="aligncenter size-full wp-image-21849" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra8.png?resize=640%2C161&#038;ssl=1" alt="" width="640" height="161" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra8.png?w=1645&amp;ssl=1 1645w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra8.png?resize=595%2C149&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra8.png?resize=960%2C241&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra8.png?resize=768%2C193&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra8.png?resize=1536%2C386&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra8.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Aquí nos indica todo lo que hemos configurado, damos a <strong>Mostrar la lista de túnel</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra9.png?ssl=1" data-lbwps-width="1287" data-lbwps-height="482" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra9.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21850" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra9#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra9.png?fit=1287%2C482&amp;ssl=1" data-orig-size="1287,482" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra9" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra9.png?fit=640%2C240&amp;ssl=1" class="aligncenter size-full wp-image-21850" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra9.png?resize=640%2C240&#038;ssl=1" alt="" width="640" height="240" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra9.png?w=1287&amp;ssl=1 1287w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra9.png?resize=595%2C223&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra9.png?resize=960%2C360&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra9.png?resize=768%2C288&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Vemos el túnel IPsec que nos ha creado, damos a <strong>Editar</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra10.png?ssl=1" data-lbwps-width="1667" data-lbwps-height="401" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra10-1536x369.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21851" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra10#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra10.png?fit=1667%2C401&amp;ssl=1" data-orig-size="1667,401" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra10" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra10.png?fit=640%2C154&amp;ssl=1" class="aligncenter size-full wp-image-21851" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra10.png?resize=640%2C154&#038;ssl=1" alt="" width="640" height="154" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra10.png?w=1667&amp;ssl=1 1667w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra10.png?resize=595%2C143&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra10.png?resize=960%2C231&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra10.png?resize=768%2C185&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra10.png?resize=1536%2C369&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra10.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Convertimos a túnel personalizado:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra11.png?ssl=1" data-lbwps-width="1459" data-lbwps-height="691" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra11.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21852" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra11#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra11.png?fit=1459%2C691&amp;ssl=1" data-orig-size="1459,691" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra11" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra11.png?fit=640%2C303&amp;ssl=1" class="aligncenter size-full wp-image-21852" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra11.png?resize=640%2C303&#038;ssl=1" alt="" width="640" height="303" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra11.png?w=1459&amp;ssl=1 1459w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra11.png?resize=595%2C282&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra11.png?resize=960%2C455&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra11.png?resize=768%2C364&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra11.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para la parte de <strong>Red</strong>, configuramos estos parámetros:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra12.png?ssl=1" data-lbwps-width="644" data-lbwps-height="897" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra12.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21853" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra12#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra12.png?fit=644%2C897&amp;ssl=1" data-orig-size="644,897" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra12" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra12.png?fit=640%2C891&amp;ssl=1" class="aligncenter size-full wp-image-21853" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra12.png?resize=640%2C891&#038;ssl=1" alt="" width="640" height="891" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra12.png?w=644&amp;ssl=1 644w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra12.png?resize=595%2C829&amp;ssl=1 595w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para la parte de <strong>Autenticación</strong>, configuramos lo siguiente:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra13.png?ssl=1" data-lbwps-width="926" data-lbwps-height="638" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra13.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21854" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra13#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra13.png?fit=926%2C638&amp;ssl=1" data-orig-size="926,638" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra13" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra13.png?fit=640%2C441&amp;ssl=1" class="aligncenter size-full wp-image-21854" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra13.png?resize=640%2C441&#038;ssl=1" alt="" width="640" height="441" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra13.png?w=926&amp;ssl=1 926w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra13.png?resize=595%2C410&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra13.png?resize=768%2C529&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para la <strong>propuesta de la fase 1</strong>, configuramos estos parámetros:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra14.png?ssl=1" data-lbwps-width="921" data-lbwps-height="650" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra14.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21855" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra14#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra14.png?fit=921%2C650&amp;ssl=1" data-orig-size="921,650" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra14" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra14.png?fit=640%2C452&amp;ssl=1" class="aligncenter size-full wp-image-21855" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra14.png?resize=640%2C452&#038;ssl=1" alt="" width="640" height="452" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra14.png?w=921&amp;ssl=1 921w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra14.png?resize=595%2C420&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra14.png?resize=768%2C542&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra14.png?resize=250%2C175&amp;ssl=1 250w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para <strong>XAUTH</strong>, aquí es donde quitamos el grupo que configuramos al crear el túnel, y para el Grupo de Usuarios, le indicamos que los herede de las políticas:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra15.png?ssl=1" data-lbwps-width="997" data-lbwps-height="815" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra15.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21856" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra15#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra15.png?fit=997%2C815&amp;ssl=1" data-orig-size="997,815" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra15" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra15.png?fit=640%2C523&amp;ssl=1" class="aligncenter size-full wp-image-21856" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra15.png?resize=640%2C523&#038;ssl=1" alt="" width="640" height="523" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra15.png?w=997&amp;ssl=1 997w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra15.png?resize=595%2C486&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra15.png?resize=960%2C785&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra15.png?resize=768%2C628&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para los <strong>Selectores de fase 2</strong>, configuramos estos parámetros, damos a <strong>OK</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra16.png?ssl=1" data-lbwps-width="1242" data-lbwps-height="913" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra16.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21857" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra16#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra16.png?fit=1242%2C913&amp;ssl=1" data-orig-size="1242,913" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra16" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra16.png?fit=640%2C471&amp;ssl=1" class="aligncenter size-full wp-image-21857" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra16.png?resize=640%2C470&#038;ssl=1" alt="" width="640" height="470" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra16.png?w=1242&amp;ssl=1 1242w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra16.png?resize=595%2C437&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra16.png?resize=960%2C706&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra16.png?resize=768%2C565&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Aquí tenemos ya el túnel IPsec configurado de modo personalizado:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra17.png?ssl=1" data-lbwps-width="1784" data-lbwps-height="401" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra17-1536x345.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21858" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra17#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra17.png?fit=1784%2C401&amp;ssl=1" data-orig-size="1784,401" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra17" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra17.png?fit=640%2C144&amp;ssl=1" class="aligncenter size-full wp-image-21858" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra17.png?resize=640%2C144&#038;ssl=1" alt="" width="640" height="144" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra17.png?w=1784&amp;ssl=1 1784w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra17.png?resize=595%2C134&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra17.png?resize=960%2C216&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra17.png?resize=768%2C173&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra17.png?resize=1536%2C345&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra17.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Antes de seguir, vamos a explicar, estos dos objetos que se han creado al crear la VPN IPsec.</li>
<li>Uno de ellos es, <strong>ipsecra_range</strong>, este objeto es para asignar las direcciones IPs de los equipos que se conecten a nuestra VPN PIsec de acceso remoto:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra18.png?ssl=1" data-lbwps-width="907" data-lbwps-height="467" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra18.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21859" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra18#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra18.png?fit=907%2C467&amp;ssl=1" data-orig-size="907,467" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra18" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra18.png?fit=640%2C330&amp;ssl=1" class="aligncenter size-full wp-image-21859" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra18.png?resize=640%2C330&#038;ssl=1" alt="" width="640" height="330" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra18.png?w=907&amp;ssl=1 907w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra18.png?resize=595%2C306&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra18.png?resize=768%2C395&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>El otro es, <strong>ipsecra_split</strong>, este objeto es un grupo de direcciones que actúa como una «lista blanca» de destinos, su función principal es decirle al cliente VPN (FortiClient) qué tráfico debe enviar obligatoriamente a través del túnel y cuál debe ignorar para que salga por su conexión local a Internet.</li>
<li>Cuando habilitamos el Split Tunneling (Túnel Dividido), el comportamiento es el siguiente:</li>
<li>Si el destino está en el objeto ipsecra_split, el FortiClient enruta ese tráfico por la VPN.</li>
<li>Si el destino NO está ahí, el FortiClient lo envía por la puerta de enlace predeterminada del usuario (su internet doméstico).</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra19.png?ssl=1" data-lbwps-width="1254" data-lbwps-height="695" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra19.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21860" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra19#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra19.png?fit=1254%2C695&amp;ssl=1" data-orig-size="1254,695" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra19" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra19.png?fit=640%2C355&amp;ssl=1" class="aligncenter size-full wp-image-21860" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra19.png?resize=640%2C355&#038;ssl=1" alt="" width="640" height="355" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra19.png?w=1254&amp;ssl=1 1254w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra19.png?resize=595%2C330&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra19.png?resize=960%2C532&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra19.png?resize=768%2C426&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>También podemos ver, que en la interface de red que le indicamos al túnel VPN IPsec, nos ha creado esta interface virtual:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra20.png?ssl=1" data-lbwps-width="1494" data-lbwps-height="792" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra20.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21861" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra20#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra20.png?fit=1494%2C792&amp;ssl=1" data-orig-size="1494,792" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra20" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra20.png?fit=640%2C339&amp;ssl=1" class="aligncenter size-full wp-image-21861" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra20.png?resize=640%2C339&#038;ssl=1" alt="" width="640" height="339" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra20.png?w=1494&amp;ssl=1 1494w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra20.png?resize=595%2C315&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra20.png?resize=960%2C509&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra20.png?resize=768%2C407&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra20.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para terminar de configurar la VPN IPsec de acceso remoto, debemos de crear las reglas o políticas para que los equipos que se conecten a través de la VPN, tengan acceso a las redes internas configuradas en nuestro firewall, voy a mostrar sólo una de ellas ya que para las demás sería exactamente igual, editamos la regla que se nos creó al crear el túnel IPsec:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra21.png?ssl=1" data-lbwps-width="1257" data-lbwps-height="1080" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra21.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21862" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra21#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra21.png?fit=1257%2C1080&amp;ssl=1" data-orig-size="1257,1080" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra21" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra21.png?fit=640%2C550&amp;ssl=1" class="aligncenter size-full wp-image-21862" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra21.png?resize=640%2C550&#038;ssl=1" alt="" width="640" height="550" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra21.png?w=1257&amp;ssl=1 1257w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra21.png?resize=595%2C511&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra21.png?resize=960%2C825&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra21.png?resize=768%2C660&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Con esto ya tendríamos configurada y operativa nuestra VPN IPsec de acceso remoto, ahora desde cualquier equipo con conexión a internet, le instalaremos el Forticlient y configuraremos los parámetros de la VPN IPsec para conectarnos desde cualquier lugar del mundo a las redes internas de nuestra infraestructura, dónde todo el tráfico irá encriptado mediante IPsec:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra22.png?ssl=1" data-lbwps-width="877" data-lbwps-height="701" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra22.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21863" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra22#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra22.png?fit=877%2C701&amp;ssl=1" data-orig-size="877,701" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra22" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra22.png?fit=640%2C512&amp;ssl=1" class="aligncenter size-full wp-image-21863" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra22.png?resize=640%2C512&#038;ssl=1" alt="" width="640" height="512" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra22.png?w=877&amp;ssl=1 877w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra22.png?resize=595%2C476&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra22.png?resize=768%2C614&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra23.png?ssl=1" data-lbwps-width="876" data-lbwps-height="681" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra23.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21864" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra23#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra23.png?fit=876%2C681&amp;ssl=1" data-orig-size="876,681" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra23" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra23.png?fit=640%2C498&amp;ssl=1" class="aligncenter size-full wp-image-21864" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra23.png?resize=640%2C498&#038;ssl=1" alt="" width="640" height="498" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra23.png?w=876&amp;ssl=1 876w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra23.png?resize=595%2C463&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra23.png?resize=768%2C597&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra24.png?ssl=1" data-lbwps-width="880" data-lbwps-height="690" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra24.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21865" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra24#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra24.png?fit=880%2C690&amp;ssl=1" data-orig-size="880,690" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra24" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra24.png?fit=640%2C502&amp;ssl=1" class="aligncenter size-full wp-image-21865" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra24.png?resize=640%2C502&#038;ssl=1" alt="" width="640" height="502" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra24.png?w=880&amp;ssl=1 880w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra24.png?resize=595%2C467&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra24.png?resize=768%2C602&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como podemos ver ya estamos conectados y nos está sirviendo una dirección IP del rango que habíamos configurado:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra25.png?ssl=1" data-lbwps-width="876" data-lbwps-height="683" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra25.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21866" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra25#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra25.png?fit=876%2C683&amp;ssl=1" data-orig-size="876,683" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra25" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra25.png?fit=640%2C499&amp;ssl=1" class="aligncenter size-full wp-image-21866" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra25.png?resize=640%2C499&#038;ssl=1" alt="" width="640" height="499" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra25.png?w=876&amp;ssl=1 876w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra25.png?resize=595%2C464&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra25.png?resize=768%2C599&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Aquí vemos el túnel levantado:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra26.png?ssl=1" data-lbwps-width="1665" data-lbwps-height="371" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra26-1536x342.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21867" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra26#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra26.png?fit=1665%2C371&amp;ssl=1" data-orig-size="1665,371" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra26" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra26.png?fit=640%2C143&amp;ssl=1" class="aligncenter size-full wp-image-21867" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra26.png?resize=640%2C143&#038;ssl=1" alt="" width="640" height="143" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra26.png?w=1665&amp;ssl=1 1665w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra26.png?resize=595%2C133&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra26.png?resize=960%2C214&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra26.png?resize=768%2C171&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra26.png?resize=1536%2C342&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra26.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Desde el Monitor IPsec de nuestro Fortigate podemos ver los usuarios conectados a través de la VPN:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra27.png?ssl=1" data-lbwps-width="1916" data-lbwps-height="663" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra27-1536x532.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21868" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra27#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra27.png?fit=1916%2C663&amp;ssl=1" data-orig-size="1916,663" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra27" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra27.png?fit=640%2C221&amp;ssl=1" class="aligncenter size-full wp-image-21868" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra27.png?resize=640%2C221&#038;ssl=1" alt="" width="640" height="221" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra27.png?w=1916&amp;ssl=1 1916w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra27.png?resize=595%2C206&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra27.png?resize=960%2C332&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra27.png?resize=768%2C266&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra27.png?resize=1536%2C532&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra27.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Desde la opción <strong>VPN &gt; VPN Location Map</strong> podemos ver desde que parte del mundo se están conectando los usuarios que hemos creado y configurado para nuestra VPN IPsec de acceso remoto:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra28.png?ssl=1" data-lbwps-width="1918" data-lbwps-height="875" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra28-1536x701.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="21869" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/conffgtvpnipsecra28#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra28.png?fit=1918%2C875&amp;ssl=1" data-orig-size="1918,875" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="conffgtvpnipsecra28" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra28.png?fit=640%2C292&amp;ssl=1" class="aligncenter size-full wp-image-21869" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra28.png?resize=640%2C292&#038;ssl=1" alt="" width="640" height="292" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra28.png?w=1918&amp;ssl=1 1918w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra28.png?resize=595%2C271&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra28.png?resize=960%2C438&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra28.png?resize=768%2C350&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra28.png?resize=1536%2C701&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2026/02/conffgtvpnipsecra28.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p>&nbsp;</p>
<p>Saludos y espero que os resulte de ayuda <img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f609.png" alt="😉" class="wp-smiley" style="height: 1em; max-height: 1em;" /></p>
<p>La entrada <a href="https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto">Configuración Fortigate – VPN IPSEC de Acceso Remoto</a> se publicó primero en <a href="https://blog.ragasys.es">RAGASYS SISTEMAS</a>.</p>
]]></content:encoded>
					
					<wfw:commentRss>https://blog.ragasys.es/configuracion-fortigate-vpn-ipsec-de-acceso-remoto/feed</wfw:commentRss>
			<slash:comments>2</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">21841</post-id>	</item>
		<item>
		<title>Configuración de VLANs en redes Proxmox VE 9.0</title>
		<link>https://blog.ragasys.es/configuracion-de-vlans-en-redes-proxmox-ve-9-0</link>
					<comments>https://blog.ragasys.es/configuracion-de-vlans-en-redes-proxmox-ve-9-0#respond</comments>
		
		<dc:creator><![CDATA[Jose Ramon Ramos Gata]]></dc:creator>
		<pubDate>Mon, 06 Oct 2025 06:58:30 +0000</pubDate>
				<category><![CDATA[Linux]]></category>
		<category><![CDATA[Maquinas virtuales]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[Proxmox]]></category>
		<category><![CDATA[Routing]]></category>
		<category><![CDATA[Switching]]></category>
		<category><![CDATA[TIC]]></category>
		<category><![CDATA[Virtualización]]></category>
		<category><![CDATA[VLAN]]></category>
		<category><![CDATA[Maquinas Virtuales]]></category>
		<category><![CDATA[Routing & Switching]]></category>
		<guid isPermaLink="false">https://blog.ragasys.es/?p=20451</guid>

					<description><![CDATA[<p>Hola a tod@s, En este post veremos cómo configurar VLANs en las redes de Proxmox VE 9.0 Para empezar y ponernos en contexto, vamos a configurar las VLANs del mismo modo que lo hacemos en una infraestructura con VMware vSphere,&#8230; <a href="https://blog.ragasys.es/configuracion-de-vlans-en-redes-proxmox-ve-9-0" class="more-link">Continuar leyendo <span class="meta-nav">&#8594;</span></a></p>
<p>La entrada <a href="https://blog.ragasys.es/configuracion-de-vlans-en-redes-proxmox-ve-9-0">Configuración de VLANs en redes Proxmox VE 9.0</a> se publicó primero en <a href="https://blog.ragasys.es">RAGASYS SISTEMAS</a>.</p>
]]></description>
										<content:encoded><![CDATA[<p>Hola a tod@s,</p>
<p>En este post veremos cómo configurar VLANs en las redes de Proxmox VE 9.0</p>
<ul>
<li>Para empezar y ponernos en contexto, vamos a configurar las VLANs del mismo modo que lo hacemos en una infraestructura con VMware vSphere, es decir, en un virtual switch, configuramos un port group del tipo VMkernel para la interface de management asignándole una dirección IP y una etiqueta o ID de VLAN, y en ese mismo virtual switch vamos configurando nuevos port group del tipo máquina virtual para cada VLAN asignándole su etiqueta o ID de VLAN que corresponda, lo mismo haremos en Proxmox, eso sí, con sus particularidades, pero la idea sería la misma:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx901.png?ssl=1" data-lbwps-width="1645" data-lbwps-height="817" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx901-1536x763.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20452" data-permalink="https://blog.ragasys.es/configuracion-de-vlans-en-redes-proxmox-ve-9-0/cdvlanserprx901#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx901.png?fit=1645%2C817&amp;ssl=1" data-orig-size="1645,817" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cdvlanserprx901" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx901.png?fit=640%2C318&amp;ssl=1" class="aligncenter size-full wp-image-20452" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx901.png?resize=640%2C318&#038;ssl=1" alt="" width="640" height="318" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx901.png?w=1645&amp;ssl=1 1645w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx901.png?resize=595%2C296&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx901.png?resize=960%2C477&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx901.png?resize=768%2C381&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx901.png?resize=1536%2C763&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx901.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Estas serían las VLANs que tenemos configuradas en nuestra infraestructura, concretamente en un router Mikrotik, VLAN_GESTION ID 99, VLAN_INGENIERIA ID 10, VLAN_CONTABILIDAD ID 20, VLAN_VENTAS ID 30:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx902.png?ssl=1" data-lbwps-width="1909" data-lbwps-height="642" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx902-1536x517.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20453" data-permalink="https://blog.ragasys.es/configuracion-de-vlans-en-redes-proxmox-ve-9-0/cdvlanserprx902#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx902.png?fit=1909%2C642&amp;ssl=1" data-orig-size="1909,642" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cdvlanserprx902" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx902.png?fit=640%2C215&amp;ssl=1" class="aligncenter size-full wp-image-20453" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx902.png?resize=640%2C215&#038;ssl=1" alt="" width="640" height="215" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx902.png?w=1909&amp;ssl=1 1909w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx902.png?resize=595%2C200&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx902.png?resize=960%2C323&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx902.png?resize=768%2C258&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx902.png?resize=1536%2C517&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx902.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx903.png?ssl=1" data-lbwps-width="1640" data-lbwps-height="350" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx903-1536x328.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20454" data-permalink="https://blog.ragasys.es/configuracion-de-vlans-en-redes-proxmox-ve-9-0/cdvlanserprx903#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx903.png?fit=1640%2C350&amp;ssl=1" data-orig-size="1640,350" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cdvlanserprx903" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx903.png?fit=640%2C137&amp;ssl=1" class="aligncenter size-full wp-image-20454" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx903.png?resize=640%2C137&#038;ssl=1" alt="" width="640" height="137" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx903.png?w=1640&amp;ssl=1 1640w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx903.png?resize=595%2C127&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx903.png?resize=960%2C205&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx903.png?resize=768%2C164&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx903.png?resize=1536%2C328&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx903.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>En nuestro servidor proxmox, tenemos configurado un bond o NIC Teaming con dos interfaces de red con la siguiente configuración:</li>
</ul>
<p>auto bond0</p>
<p>iface bond0 inet manual</p>
<p>bond-slaves ens192 ens224</p>
<p>bond-miimon 100</p>
<p>bond-mode balance-rr</p>
<p>&nbsp;</p>
<p>auto vmbr0</p>
<p>iface vmbr0 inet static</p>
<p>address 192.168.99.100/24</p>
<p>gateway 192.168.99.1</p>
<p>bridge-ports bond0</p>
<p>bridge-stp off</p>
<p>bridge-fd 0</p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx904.png?ssl=1" data-lbwps-width="1913" data-lbwps-height="718" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx904-1536x577.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20455" data-permalink="https://blog.ragasys.es/configuracion-de-vlans-en-redes-proxmox-ve-9-0/cdvlanserprx904#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx904.png?fit=1913%2C718&amp;ssl=1" data-orig-size="1913,718" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cdvlanserprx904" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx904.png?fit=640%2C240&amp;ssl=1" class="aligncenter size-full wp-image-20455" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx904.png?resize=640%2C240&#038;ssl=1" alt="" width="640" height="240" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx904.png?w=1913&amp;ssl=1 1913w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx904.png?resize=595%2C223&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx904.png?resize=960%2C360&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx904.png?resize=768%2C288&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx904.png?resize=1536%2C577&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx904.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx905.png?ssl=1" data-lbwps-width="1913" data-lbwps-height="388" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx905-1536x312.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20456" data-permalink="https://blog.ragasys.es/configuracion-de-vlans-en-redes-proxmox-ve-9-0/cdvlanserprx905#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx905.png?fit=1913%2C388&amp;ssl=1" data-orig-size="1913,388" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cdvlanserprx905" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx905.png?fit=640%2C130&amp;ssl=1" class="aligncenter size-full wp-image-20456" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx905.png?resize=640%2C130&#038;ssl=1" alt="" width="640" height="130" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx905.png?w=1913&amp;ssl=1 1913w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx905.png?resize=595%2C121&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx905.png?resize=960%2C195&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx905.png?resize=768%2C156&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx905.png?resize=1536%2C312&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx905.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora para configurar las VLANs, este sería el plateamiento:</li>
<li><strong>El nodo de Proxmox (management)</strong> con su IP en la <strong>VLAN 99</strong>.</li>
<li><strong>Las VMs/Contenedores LXCs</strong> que salgan por el mismo puerto trunk, cada uno en su propia VLAN (10, 20, 30).</li>
<li>Esta sería la configuración:</li>
</ul>
<p>auto bond0</p>
<p>iface bond0 inet manual</p>
<p>bond-slaves ens192 ens224</p>
<p>bond-miimon 100</p>
<p>bond-mode balance-rr</p>
<p>&nbsp;</p>
<p>auto vmbr0</p>
<p>iface vmbr0 inet manual</p>
<p>bridge-ports bond0</p>
<p>bridge-stp off</p>
<p>bridge-fd 0</p>
<p>&nbsp;</p>
<p>auto vmbr0.99</p>
<p>iface vmbr0.99 inet static</p>
<p>address 192.168.99.100/24</p>
<p>gateway 192.168.99.1</p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx906.png?ssl=1" data-lbwps-width="1897" data-lbwps-height="716" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx906-1536x580.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20457" data-permalink="https://blog.ragasys.es/configuracion-de-vlans-en-redes-proxmox-ve-9-0/cdvlanserprx906#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx906.png?fit=1897%2C716&amp;ssl=1" data-orig-size="1897,716" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cdvlanserprx906" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx906.png?fit=640%2C241&amp;ssl=1" class="aligncenter size-full wp-image-20457" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx906.png?resize=640%2C242&#038;ssl=1" alt="" width="640" height="242" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx906.png?w=1897&amp;ssl=1 1897w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx906.png?resize=595%2C225&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx906.png?resize=960%2C362&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx906.png?resize=768%2C290&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx906.png?resize=1536%2C580&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx906.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Si accedemos a la interface gráfica, así nos quedaría:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx907.png?ssl=1" data-lbwps-width="1913" data-lbwps-height="438" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx907-1536x352.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20458" data-permalink="https://blog.ragasys.es/configuracion-de-vlans-en-redes-proxmox-ve-9-0/cdvlanserprx907#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx907.png?fit=1913%2C438&amp;ssl=1" data-orig-size="1913,438" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cdvlanserprx907" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx907.png?fit=640%2C147&amp;ssl=1" class="aligncenter size-full wp-image-20458" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx907.png?resize=640%2C147&#038;ssl=1" alt="" width="640" height="147" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx907.png?w=1913&amp;ssl=1 1913w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx907.png?resize=595%2C136&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx907.png?resize=960%2C220&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx907.png?resize=768%2C176&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx907.png?resize=1536%2C352&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx907.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Con esto, ya tendríamos configurado el acceso a nuestro Proxmox desde la VLAN de GESTION, para la configuración de las VMs/Contenedores LXCs elegiremos el bridge vmbr0, en el campo <strong>VLAN Tag</strong>, colocaremos el número de VLAN (10, 20, 30), así Proxmox insertará el tag VLAN cuando el tráfico salga por vmbr0 → bond0 hacia el switch trunk:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx908.png?ssl=1" data-lbwps-width="1191" data-lbwps-height="703" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx908.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="20459" data-permalink="https://blog.ragasys.es/configuracion-de-vlans-en-redes-proxmox-ve-9-0/cdvlanserprx908#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx908.png?fit=1191%2C703&amp;ssl=1" data-orig-size="1191,703" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cdvlanserprx908" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx908.png?fit=640%2C378&amp;ssl=1" class="aligncenter size-full wp-image-20459" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx908.png?resize=640%2C378&#038;ssl=1" alt="" width="640" height="378" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx908.png?w=1191&amp;ssl=1 1191w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx908.png?resize=595%2C351&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx908.png?resize=960%2C567&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2025/08/cdvlanserprx908.png?resize=768%2C453&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Este sería el resumen de todo lo que hemos configurado:</li>
<li>El <strong>nodo Proxmox</strong> usa la VLAN 99 → vmbr0.99</li>
<li>Una <strong>VM1</strong> con IP en VLAN 10 → asignamos vmbr0 como interfaz y VLAN Tag = 10</li>
<li>Una <strong>VM2</strong> con IP en VLAN 20 → asignamos vmbr0 como interfaz y VLAN Tag = 20</li>
<li>Una <strong>VM3</strong> con IP en VLAN 30 → asignamos vmbr0 como interfaz y VLAN Tag = 30</li>
<li>El switch físico, debe tener el puerto donde está Proxmox en modo trunk/tagged con VLANs 10, 20, 30 y 99 permitidas.</li>
<li>La <strong>VLAN 99</strong> es la que usará el propio Proxmox para <strong>management</strong></li>
<li><strong>Proxmox</strong> se gestiona en la <strong>VLAN 99</strong></li>
<li>Las <strong>VMs/Contenedores LXCs</strong> pueden usar cualquier VLAN disponible en el trunk, solo con asignar el tag correspondiente en la GUI</li>
</ul>
<p>&nbsp;</p>
<p>Saludos y espero que os resulte de ayuda <img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f609.png" alt="😉" class="wp-smiley" style="height: 1em; max-height: 1em;" /></p>
<p>La entrada <a href="https://blog.ragasys.es/configuracion-de-vlans-en-redes-proxmox-ve-9-0">Configuración de VLANs en redes Proxmox VE 9.0</a> se publicó primero en <a href="https://blog.ragasys.es">RAGASYS SISTEMAS</a>.</p>
]]></content:encoded>
					
					<wfw:commentRss>https://blog.ragasys.es/configuracion-de-vlans-en-redes-proxmox-ve-9-0/feed</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">20451</post-id>	</item>
		<item>
		<title>Fortigate &#8211; HA &#8211; Interfaces Virtuales Para Management</title>
		<link>https://blog.ragasys.es/fortigate-ha-interfaces-virtuales-para-management</link>
					<comments>https://blog.ragasys.es/fortigate-ha-interfaces-virtuales-para-management#respond</comments>
		
		<dc:creator><![CDATA[Jose Ramon Ramos Gata]]></dc:creator>
		<pubDate>Mon, 26 Apr 2021 07:34:25 +0000</pubDate>
				<category><![CDATA[Cluster]]></category>
		<category><![CDATA[Firewall]]></category>
		<category><![CDATA[Fortigate]]></category>
		<category><![CDATA[Fortinet]]></category>
		<category><![CDATA[HA]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[Routing]]></category>
		<category><![CDATA[Switching]]></category>
		<category><![CDATA[Routing & Switching]]></category>
		<guid isPermaLink="false">https://blog.ragasys.es/?p=13325</guid>

					<description><![CDATA[<p>Hola a tod@s, En este post vamos a ver como configurar las interfaces virtuales para administración en un cluster HA con dispositivos Fortigate, en un post anterior vimos como configurar interfaces dedicadas de management utilizando un puerto físico del dispositivo,&#8230; <a href="https://blog.ragasys.es/fortigate-ha-interfaces-virtuales-para-management" class="more-link">Continuar leyendo <span class="meta-nav">&#8594;</span></a></p>
<p>La entrada <a href="https://blog.ragasys.es/fortigate-ha-interfaces-virtuales-para-management">Fortigate &#8211; HA &#8211; Interfaces Virtuales Para Management</a> se publicó primero en <a href="https://blog.ragasys.es">RAGASYS SISTEMAS</a>.</p>
]]></description>
										<content:encoded><![CDATA[<p>Hola a tod@s,</p>
<p>En este post vamos a ver como configurar las interfaces virtuales para administración en un cluster HA con dispositivos Fortigate, en un post anterior vimos como configurar interfaces dedicadas de management utilizando un puerto físico del dispositivo, en muchas ocasiones, podemos encontrarnos con dispositivos Fortigates con pocas interfaces físicas, y si queremos un puerto dedicado para administración, entonces lo mejor es configurar estas interfaces virtuales, utilizando un puerto físico que ya tenemos en uso.</p>
<ul>
<li>Lo primero que tenemos que hacer es acceder a <strong>System &gt; HA</strong> <strong>&gt; Fortigate Primario &gt; Editar</strong> y verificar que <strong>Management Interface Reservation</strong> está deshabilitado en nuestro cluster:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_1.png?ssl=1" data-lbwps-width="1915" data-lbwps-height="409" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_1-1536x328.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13326" data-permalink="https://blog.ragasys.es/fortigate-ha-interfaces-virtuales-para-management/fghaivpmngmt_1#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_1.png?fit=1915%2C409&amp;ssl=1" data-orig-size="1915,409" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fghaivpmngmt_1" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_1.png?fit=640%2C137&amp;ssl=1" class="aligncenter size-full wp-image-13326" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_1.png?resize=640%2C137&#038;ssl=1" alt="" width="640" height="137" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_1.png?w=1915&amp;ssl=1 1915w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_1.png?resize=595%2C127&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_1.png?resize=960%2C205&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_1.png?resize=768%2C164&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_1.png?resize=1536%2C328&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_1.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_2.png?ssl=1" data-lbwps-width="1248" data-lbwps-height="718" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_2.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13327" data-permalink="https://blog.ragasys.es/fortigate-ha-interfaces-virtuales-para-management/fghaivpmngmt_2#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_2.png?fit=1248%2C718&amp;ssl=1" data-orig-size="1248,718" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fghaivpmngmt_2" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_2.png?fit=640%2C368&amp;ssl=1" class="aligncenter size-full wp-image-13327" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_2.png?resize=640%2C368&#038;ssl=1" alt="" width="640" height="368" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_2.png?w=1248&amp;ssl=1 1248w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_2.png?resize=595%2C342&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_2.png?resize=960%2C552&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_2.png?resize=768%2C442&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para configurar las interfaces virtuales debemos de acceder por consola:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_3.png?ssl=1" data-lbwps-width="1911" data-lbwps-height="358" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_3-1536x288.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13328" data-permalink="https://blog.ragasys.es/fortigate-ha-interfaces-virtuales-para-management/fghaivpmngmt_3#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_3.png?fit=1911%2C358&amp;ssl=1" data-orig-size="1911,358" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fghaivpmngmt_3" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_3.png?fit=640%2C120&amp;ssl=1" class="aligncenter size-full wp-image-13328" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_3.png?resize=640%2C120&#038;ssl=1" alt="" width="640" height="120" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_3.png?w=1911&amp;ssl=1 1911w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_3.png?resize=595%2C111&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_3.png?resize=960%2C180&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_3.png?resize=768%2C144&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_3.png?resize=1536%2C288&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_3.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ejecutamos el comando <strong>system config interface</strong> y editamos el puerto 10 con <strong>edit port10:</strong></li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_4.png?ssl=1" data-lbwps-width="857" data-lbwps-height="218" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_4.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13329" data-permalink="https://blog.ragasys.es/fortigate-ha-interfaces-virtuales-para-management/fghaivpmngmt_4#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_4.png?fit=857%2C218&amp;ssl=1" data-orig-size="857,218" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fghaivpmngmt_4" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_4.png?fit=640%2C163&amp;ssl=1" class="aligncenter size-full wp-image-13329" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_4.png?resize=640%2C163&#038;ssl=1" alt="" width="640" height="163" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_4.png?w=857&amp;ssl=1 857w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_4.png?resize=595%2C151&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_4.png?resize=768%2C195&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Le hacemos un <strong>get </strong>y cómo podemos ver tenemos la opción de configurar el <strong>management-ip</strong>, esta IP virtual no se va a sincronizar entre los dispositivos del cluster:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_5.png?ssl=1" data-lbwps-width="851" data-lbwps-height="707" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_5.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13330" data-permalink="https://blog.ragasys.es/fortigate-ha-interfaces-virtuales-para-management/fghaivpmngmt_5#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_5.png?fit=851%2C707&amp;ssl=1" data-orig-size="851,707" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fghaivpmngmt_5" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_5.png?fit=640%2C532&amp;ssl=1" class="aligncenter size-full wp-image-13330" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_5.png?resize=640%2C532&#038;ssl=1" alt="" width="640" height="532" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_5.png?w=851&amp;ssl=1 851w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_5.png?resize=595%2C494&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_5.png?resize=768%2C638&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora con el comando <strong>set management-ip 192.168.14.225 255.255.255.0 </strong>le vamos a asignar al dispositivo con el rol primario del cluster, una dirección IP virtual que utilizaremos para la gestión y administración del dispositivo:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_6.png?ssl=1" data-lbwps-width="762" data-lbwps-height="854" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_6.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13331" data-permalink="https://blog.ragasys.es/fortigate-ha-interfaces-virtuales-para-management/fghaivpmngmt_6#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_6.png?fit=762%2C854&amp;ssl=1" data-orig-size="762,854" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fghaivpmngmt_6" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_6.png?fit=640%2C717&amp;ssl=1" class="aligncenter size-full wp-image-13331" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_6.png?resize=640%2C717&#038;ssl=1" alt="" width="640" height="717" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_6.png?w=762&amp;ssl=1 762w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_6.png?resize=595%2C667&amp;ssl=1 595w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Si le hacemos un <strong>get</strong> podemos ver que ya tiene la IP virtual configurada:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_7.png?ssl=1" data-lbwps-width="706" data-lbwps-height="352" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_7.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13332" data-permalink="https://blog.ragasys.es/fortigate-ha-interfaces-virtuales-para-management/fghaivpmngmt_7#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_7.png?fit=706%2C352&amp;ssl=1" data-orig-size="706,352" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fghaivpmngmt_7" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_7.png?fit=640%2C319&amp;ssl=1" class="aligncenter size-full wp-image-13332" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_7.png?resize=640%2C319&#038;ssl=1" alt="" width="640" height="319" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_7.png?w=706&amp;ssl=1 706w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_7.png?resize=595%2C297&amp;ssl=1 595w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Con <strong>end</strong> salimos y guardamos los cambios:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_8.png?ssl=1" data-lbwps-width="554" data-lbwps-height="862" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_8.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13333" data-permalink="https://blog.ragasys.es/fortigate-ha-interfaces-virtuales-para-management/fghaivpmngmt_8#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_8.png?fit=554%2C862&amp;ssl=1" data-orig-size="554,862" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fghaivpmngmt_8" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_8.png?fit=554%2C862&amp;ssl=1" class="aligncenter size-full wp-image-13333" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_8.png?resize=554%2C862&#038;ssl=1" alt="" width="554" height="862" /></a></p>
<ul>
<li>Ahora ya podemos acceder a través de la IP de management virtual sobre el Fortigate01:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_9.png?ssl=1" data-lbwps-width="1912" data-lbwps-height="518" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_9-1536x416.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13334" data-permalink="https://blog.ragasys.es/fortigate-ha-interfaces-virtuales-para-management/fghaivpmngmt_9#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_9.png?fit=1912%2C518&amp;ssl=1" data-orig-size="1912,518" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fghaivpmngmt_9" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_9.png?fit=640%2C173&amp;ssl=1" class="aligncenter size-full wp-image-13334" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_9.png?resize=640%2C173&#038;ssl=1" alt="" width="640" height="173" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_9.png?w=1912&amp;ssl=1 1912w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_9.png?resize=595%2C161&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_9.png?resize=960%2C260&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_9.png?resize=768%2C208&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_9.png?resize=1536%2C416&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_9.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora vamos a configurar la interface de management virtual del Fortigate que tiene el rol de secundario, para ello nos abrimos una consola CLI y ejecutamos el comando <strong>execute ha manage 0 admin </strong>para acceder al dispositivo con el rol de secundario:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_10.png?ssl=1" data-lbwps-width="787" data-lbwps-height="254" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_10.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13335" data-permalink="https://blog.ragasys.es/fortigate-ha-interfaces-virtuales-para-management/fghaivpmngmt_10#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_10.png?fit=787%2C254&amp;ssl=1" data-orig-size="787,254" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fghaivpmngmt_10" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_10.png?fit=640%2C207&amp;ssl=1" class="aligncenter size-full wp-image-13335" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_10.png?resize=640%2C207&#038;ssl=1" alt="" width="640" height="207" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_10.png?w=787&amp;ssl=1 787w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_10.png?resize=595%2C192&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_10.png?resize=768%2C248&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ejecutamos el comando <strong>system config interface</strong> y editamos el puerto 10 con <strong>edit port10:</strong></li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_11.png?ssl=1" data-lbwps-width="615" data-lbwps-height="230" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_11.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13336" data-permalink="https://blog.ragasys.es/fortigate-ha-interfaces-virtuales-para-management/fghaivpmngmt_11#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_11.png?fit=615%2C230&amp;ssl=1" data-orig-size="615,230" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fghaivpmngmt_11" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_11.png?fit=615%2C230&amp;ssl=1" class="aligncenter size-full wp-image-13336" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_11.png?resize=615%2C230&#038;ssl=1" alt="" width="615" height="230" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_11.png?w=615&amp;ssl=1 615w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_11.png?resize=595%2C223&amp;ssl=1 595w" sizes="auto, (max-width: 615px) 100vw, 615px" /></a></p>
<ul>
<li>Le hacemos un <strong>get </strong>y cómo podemos ver tenemos la opción de configurar el <strong>management-ip</strong>, esta IP virtual no se va a sincronizar entre los dispositivos del cluster:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_12.png?ssl=1" data-lbwps-width="719" data-lbwps-height="852" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_12.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13337" data-permalink="https://blog.ragasys.es/fortigate-ha-interfaces-virtuales-para-management/fghaivpmngmt_12#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_12.png?fit=719%2C852&amp;ssl=1" data-orig-size="719,852" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fghaivpmngmt_12" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_12.png?fit=640%2C758&amp;ssl=1" class="aligncenter size-full wp-image-13337" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_12.png?resize=640%2C758&#038;ssl=1" alt="" width="640" height="758" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_12.png?w=719&amp;ssl=1 719w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_12.png?resize=595%2C705&amp;ssl=1 595w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora con el comando <strong>set management-ip 192.168.14.226 255.255.255.0 </strong>le vamos a asignar al dispositivo con el rol secundario del cluster, una dirección IP virtual que utilizaremos para la gestión y administración del dispositivo:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_13.png?ssl=1" data-lbwps-width="776" data-lbwps-height="827" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_13.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13338" data-permalink="https://blog.ragasys.es/fortigate-ha-interfaces-virtuales-para-management/fghaivpmngmt_13#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_13.png?fit=776%2C827&amp;ssl=1" data-orig-size="776,827" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fghaivpmngmt_13" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_13.png?fit=640%2C682&amp;ssl=1" class="aligncenter size-full wp-image-13338" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_13.png?resize=640%2C682&#038;ssl=1" alt="" width="640" height="682" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_13.png?w=776&amp;ssl=1 776w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_13.png?resize=595%2C634&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_13.png?resize=768%2C818&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Si le hacemos un <strong>get</strong> podemos ver que ya tiene la IP virtual configurada:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_14.png?ssl=1" data-lbwps-width="753" data-lbwps-height="330" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_14.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13339" data-permalink="https://blog.ragasys.es/fortigate-ha-interfaces-virtuales-para-management/fghaivpmngmt_14#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_14.png?fit=753%2C330&amp;ssl=1" data-orig-size="753,330" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fghaivpmngmt_14" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_14.png?fit=640%2C280&amp;ssl=1" class="aligncenter size-full wp-image-13339" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_14.png?resize=640%2C280&#038;ssl=1" alt="" width="640" height="280" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_14.png?w=753&amp;ssl=1 753w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_14.png?resize=595%2C261&amp;ssl=1 595w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Con <strong>end</strong> salimos y guardamos los cambios:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_15.png?ssl=1" data-lbwps-width="562" data-lbwps-height="859" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_15.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13340" data-permalink="https://blog.ragasys.es/fortigate-ha-interfaces-virtuales-para-management/fghaivpmngmt_15#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_15.png?fit=562%2C859&amp;ssl=1" data-orig-size="562,859" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fghaivpmngmt_15" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_15.png?fit=562%2C859&amp;ssl=1" class="aligncenter size-full wp-image-13340" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_15.png?resize=562%2C859&#038;ssl=1" alt="" width="562" height="859" /></a></p>
<ul>
<li>Ahora ya podemos acceder a través de la IP de management virtual sobre el Fortigate02:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_16.png?ssl=1" data-lbwps-width="1915" data-lbwps-height="507" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_16-1536x407.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13341" data-permalink="https://blog.ragasys.es/fortigate-ha-interfaces-virtuales-para-management/fghaivpmngmt_16#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_16.png?fit=1915%2C507&amp;ssl=1" data-orig-size="1915,507" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fghaivpmngmt_16" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_16.png?fit=640%2C169&amp;ssl=1" class="aligncenter size-full wp-image-13341" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_16.png?resize=640%2C169&#038;ssl=1" alt="" width="640" height="169" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_16.png?w=1915&amp;ssl=1 1915w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_16.png?resize=595%2C158&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_16.png?resize=960%2C254&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_16.png?resize=768%2C203&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_16.png?resize=1536%2C407&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fghaivpmngmt_16.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p>&nbsp;</p>
<p>Saludos y espero que os sea de ayuda <img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f609.png" alt="😉" class="wp-smiley" style="height: 1em; max-height: 1em;" /></p>
<p>&nbsp;</p>
<p>La entrada <a href="https://blog.ragasys.es/fortigate-ha-interfaces-virtuales-para-management">Fortigate &#8211; HA &#8211; Interfaces Virtuales Para Management</a> se publicó primero en <a href="https://blog.ragasys.es">RAGASYS SISTEMAS</a>.</p>
]]></content:encoded>
					
					<wfw:commentRss>https://blog.ragasys.es/fortigate-ha-interfaces-virtuales-para-management/feed</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">13325</post-id>	</item>
		<item>
		<title>Fortigate HA ACTIVO – ACTIVO</title>
		<link>https://blog.ragasys.es/fortigate-ha-activo-activo</link>
					<comments>https://blog.ragasys.es/fortigate-ha-activo-activo#comments</comments>
		
		<dc:creator><![CDATA[Jose Ramon Ramos Gata]]></dc:creator>
		<pubDate>Thu, 22 Apr 2021 08:33:08 +0000</pubDate>
				<category><![CDATA[Cluster]]></category>
		<category><![CDATA[Firewall]]></category>
		<category><![CDATA[Fortigate]]></category>
		<category><![CDATA[Fortinet]]></category>
		<category><![CDATA[HA]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[Routing]]></category>
		<category><![CDATA[Switching]]></category>
		<category><![CDATA[Routing & Switching]]></category>
		<guid isPermaLink="false">https://blog.ragasys.es/?p=13280</guid>

					<description><![CDATA[<p>Hola a tod@s, En este post vamos a ver como configurar dos Firewall Fortigate en HA (Alta Disponibilidad) en modo Activo-Activo: Vamos a utilizar dos Interfaces de cada dispositivo para HA para vincularlos y sincronizarlos. En HA uno de los&#8230; <a href="https://blog.ragasys.es/fortigate-ha-activo-activo" class="more-link">Continuar leyendo <span class="meta-nav">&#8594;</span></a></p>
<p>La entrada <a href="https://blog.ragasys.es/fortigate-ha-activo-activo">Fortigate HA ACTIVO – ACTIVO</a> se publicó primero en <a href="https://blog.ragasys.es">RAGASYS SISTEMAS</a>.</p>
]]></description>
										<content:encoded><![CDATA[<p>Hola a tod@s,</p>
<p>En este post vamos a ver como configurar dos Firewall Fortigate en HA (Alta Disponibilidad) en modo Activo-Activo:</p>
<ul>
<li>Vamos a utilizar dos Interfaces de cada dispositivo para HA para vincularlos y sincronizarlos.</li>
<li>En HA uno de los Fortigate estará como primario y éste sincronizará su información con el otro Fortigate que será el secundario.</li>
<li>El link para el HA entre los Fortigate, que en este caso usaremos dos (HA1 y HA2) se llama Heartbeat y se utiliza para la sincronización y detección entre los equipos.</li>
<li>Tenemos dos modos de configurar HA: Activo-Pasivo y Activo-Activo.</li>
</ul>
<p>En este segundo post vamos a ver el modo Activo-Activo, en este modo todos los dispositivos procesan tráfico, pero seguimos teniendo un dispositivo que actúa como primario y otro como secundario, el dispositivo primario se encarga de distribuir todas las sesiones en el cluster, pero si el primario cae, entonces el secundario pasaría a tener el rol de primario.</p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_1.png?ssl=1" data-lbwps-width="998" data-lbwps-height="383" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_1.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13281" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-activo/fhaaa_1#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_1.png?fit=998%2C383&amp;ssl=1" data-orig-size="998,383" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaaa_1" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_1.png?fit=640%2C245&amp;ssl=1" class="aligncenter size-full wp-image-13281" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_1.png?resize=640%2C246&#038;ssl=1" alt="" width="640" height="246" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_1.png?w=998&amp;ssl=1 998w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_1.png?resize=595%2C228&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_1.png?resize=960%2C368&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_1.png?resize=768%2C295&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p>Vamos a ver que necesitamos para crear y configurar un cluster HA en Firewall FortiGates:</p>
<ul>
<li>Dos Fortigates del mismo modelo</li>
<li>Misma versión de FortiOS en ambos equipos</li>
<li>Mismas licencias</li>
<li>Un link entre los equipos que componen el cluster HA, en este caso vamos a utilizar dos</li>
<li>Las mismas interfaces deben de estar conectadas al mismo dominio de broadcast, es decir, los puertos usados deben de ser los mismos en ambos dispositivos y conectados en el mismo segmento de red.</li>
</ul>
<p>&nbsp;</p>
<ul>
<li>Para empezar con la configuración de nuestro cluster HA Activo-Activo, vamos a realizar las configuraciones básicas sobre uno de nuestros Fortigate, que actuará como primario, el otro Fortigate lo dejamos con las configuraciones de fábrica, <a href="https://blog.ragasys.es/fortigate-configuracion-inicial-y-puesta-en-marcha" target="_blank" rel="noopener">en este link podemos ver la configuración inicial y puesta en marcha</a>.</li>
<li>Aquí vemos como tenemos configurado el hostname y las interfaces de red del primer Fortigate (LAN y WAN):</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_2.png?ssl=1" data-lbwps-width="964" data-lbwps-height="573" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_2.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13282" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-activo/fhaaa_2#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_2.png?fit=964%2C573&amp;ssl=1" data-orig-size="964,573" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaaa_2" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_2.png?fit=640%2C381&amp;ssl=1" class="aligncenter size-full wp-image-13282" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_2.png?resize=640%2C380&#038;ssl=1" alt="" width="640" height="380" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_2.png?w=964&amp;ssl=1 964w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_2.png?resize=595%2C354&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_2.png?resize=960%2C571&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_2.png?resize=768%2C456&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_3.png?ssl=1" data-lbwps-width="1389" data-lbwps-height="785" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_3.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13283" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-activo/fhaaa_3#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_3.png?fit=1389%2C785&amp;ssl=1" data-orig-size="1389,785" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaaa_3" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_3.png?fit=640%2C362&amp;ssl=1" class="aligncenter size-full wp-image-13283" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_3.png?resize=640%2C362&#038;ssl=1" alt="" width="640" height="362" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_3.png?w=1389&amp;ssl=1 1389w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_3.png?resize=595%2C336&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_3.png?resize=960%2C543&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_3.png?resize=768%2C434&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_3.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Del segundo Fortigate, está tal y como viene de fábrica:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_4.png?ssl=1" data-lbwps-width="1895" data-lbwps-height="757" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_4-1536x614.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13284" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-activo/fhaaa_4#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_4.png?fit=1895%2C757&amp;ssl=1" data-orig-size="1895,757" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaaa_4" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_4.png?fit=640%2C255&amp;ssl=1" class="aligncenter size-full wp-image-13284" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_4.png?resize=640%2C256&#038;ssl=1" alt="" width="640" height="256" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_4.png?w=1895&amp;ssl=1 1895w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_4.png?resize=595%2C238&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_4.png?resize=960%2C383&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_4.png?resize=768%2C307&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_4.png?resize=1536%2C614&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_4.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Lo primero que vamos a realizar es configurar sobre el Fortigate01 el nombre de las interfaces de red que van a participar en el cluster HA, se llaman interfaces de Heartbeat y se utilizan para la sincronización y detección entre los equipos, utilizaremos los puertos 4 y 5:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_5.png?ssl=1" data-lbwps-width="1419" data-lbwps-height="793" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_5.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13285" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-activo/fhaaa_5#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_5.png?fit=1419%2C793&amp;ssl=1" data-orig-size="1419,793" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaaa_5" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_5.png?fit=640%2C357&amp;ssl=1" class="aligncenter size-full wp-image-13285" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_5.png?resize=640%2C358&#038;ssl=1" alt="" width="640" height="358" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_5.png?w=1419&amp;ssl=1 1419w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_5.png?resize=595%2C333&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_5.png?resize=960%2C536&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_5.png?resize=768%2C429&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_5.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora sobre <strong>System &gt; HA &gt; </strong>seleccionamos el modo que nos interese, en este caso<strong> Active-Active:</strong></li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_6.png?ssl=1" data-lbwps-width="1253" data-lbwps-height="712" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_6.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13286" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-activo/fhaaa_6#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_6.png?fit=1253%2C712&amp;ssl=1" data-orig-size="1253,712" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaaa_6" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_6.png?fit=640%2C364&amp;ssl=1" class="aligncenter size-full wp-image-13286" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_6.png?resize=640%2C364&#038;ssl=1" alt="" width="640" height="364" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_6.png?w=1253&amp;ssl=1 1253w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_6.png?resize=595%2C338&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_6.png?resize=960%2C546&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_6.png?resize=768%2C436&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre <strong>High Availability </strong>le indicamos el modo y la prioridad, sobre <strong>Cluster Settings </strong>le damos un nombre al cluster, le asignamos un password, habilitamos <strong>Session pickup</strong> para que automáticamente se pasen las sesiones de un Fortigate a otro y así los clientes no tengan que volver a reconectarse, el <strong>Monitor interfaces</strong> lo vamos a habilitar más adelante y explicaremos de que se trata y sobre <strong>Heartbeat Interfaces</strong> vamos a configurar las interfaces que van a participar en el cluster HA, sobre <strong>Heartbeat Interface Priority </strong>vamos a configurar las prioridades de las interfaces de Heartbeat, que en este caso el port4 va a tener prioridad sobre el port5:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_7.png?ssl=1" data-lbwps-width="1247" data-lbwps-height="722" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_7.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13287" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-activo/fhaaa_7#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_7.png?fit=1247%2C722&amp;ssl=1" data-orig-size="1247,722" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaaa_7" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_7.png?fit=640%2C371&amp;ssl=1" class="aligncenter size-full wp-image-13287" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_7.png?resize=640%2C371&#038;ssl=1" alt="" width="640" height="371" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_7.png?w=1247&amp;ssl=1 1247w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_7.png?resize=595%2C344&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_7.png?resize=960%2C556&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_7.png?resize=768%2C445&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora podemos ver que en <strong>System &gt; HA</strong> nos muestra los puertos 4 y 5 con un corazón indicando que son los puertos de Heartbeat para el cluster:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_8.png?ssl=1" data-lbwps-width="1915" data-lbwps-height="636" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_8-1536x510.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13288" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-activo/fhaaa_8#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_8.png?fit=1915%2C636&amp;ssl=1" data-orig-size="1915,636" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaaa_8" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_8.png?fit=640%2C213&amp;ssl=1" class="aligncenter size-full wp-image-13288" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_8.png?resize=640%2C213&#038;ssl=1" alt="" width="640" height="213" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_8.png?w=1915&amp;ssl=1 1915w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_8.png?resize=595%2C198&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_8.png?resize=960%2C319&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_8.png?resize=768%2C255&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_8.png?resize=1536%2C510&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_8.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre el Fortigate01 ya tenemos las configuraciones de HA realizadas, ahora debemos de configurar el Fortigate02, y como el nombre del host no se sincroniza, es lo primero que tenemos que configurar, en <strong>System &gt; Settings</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_9.png?ssl=1" data-lbwps-width="1293" data-lbwps-height="950" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_9.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13289" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-activo/fhaaa_9#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_9.png?fit=1293%2C950&amp;ssl=1" data-orig-size="1293,950" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaaa_9" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_9.png?fit=640%2C470&amp;ssl=1" class="aligncenter size-full wp-image-13289" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_9.png?resize=640%2C470&#038;ssl=1" alt="" width="640" height="470" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_9.png?w=1293&amp;ssl=1 1293w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_9.png?resize=595%2C437&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_9.png?resize=960%2C705&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_9.png?resize=768%2C564&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora sobre <strong>System &gt; HA</strong> realizamos las mismas configuraciones que hemos hecho sobre el Fortigate01, excepto que en la prioridad del dispositivo la vamos a bajar a 100, clic sobre OK:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_10.png?ssl=1" data-lbwps-width="1247" data-lbwps-height="733" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_10.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13290" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-activo/fhaaa_10#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_10.png?fit=1247%2C733&amp;ssl=1" data-orig-size="1247,733" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaaa_10" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_10.png?fit=640%2C376&amp;ssl=1" class="aligncenter size-full wp-image-13290" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_10.png?resize=640%2C376&#038;ssl=1" alt="" width="640" height="376" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_10.png?w=1247&amp;ssl=1 1247w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_10.png?resize=595%2C350&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_10.png?resize=960%2C564&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_10.png?resize=768%2C451&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como podemos ver, perdemos conexión con nuestro Fortigate02, ya que la dirección IP que tenía, ha desaparecido al unirlo al cluster, ahora estos dos dispositivos es como si fuesen uno solo y los dos van a tener las mismas configuraciones:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_11.png?ssl=1" data-lbwps-width="1314" data-lbwps-height="711" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_11.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13291" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-activo/fhaaa_11#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_11.png?fit=1314%2C711&amp;ssl=1" data-orig-size="1314,711" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaaa_11" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_11.png?fit=640%2C346&amp;ssl=1" class="aligncenter size-full wp-image-13291" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_11.png?resize=640%2C346&#038;ssl=1" alt="" width="640" height="346" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_11.png?w=1314&amp;ssl=1 1314w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_11.png?resize=595%2C322&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_11.png?resize=960%2C519&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_11.png?resize=768%2C416&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre el Fortigate01 accedemos a <strong>System &gt; HA </strong>y podemos ver que ya tenemos el segundo dispositivo unido al cluster, aunque todavía está sincronizando, esto nos lo muestra muy claro el checksum, que como podemos observar, son números diferentes, ya que al no estar sincronizados todavía cada dispositivo tiene una configuración:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_12.png?ssl=1" data-lbwps-width="1915" data-lbwps-height="641" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_12-1536x514.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13292" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-activo/fhaaa_12#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_12.png?fit=1915%2C641&amp;ssl=1" data-orig-size="1915,641" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaaa_12" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_12.png?fit=640%2C214&amp;ssl=1" class="aligncenter size-full wp-image-13292" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_12.png?resize=640%2C214&#038;ssl=1" alt="" width="640" height="214" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_12.png?w=1915&amp;ssl=1 1915w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_12.png?resize=595%2C199&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_12.png?resize=960%2C321&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_12.png?resize=768%2C257&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_12.png?resize=1536%2C514&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_12.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Pasados unos minutos, ya podemos ver que los dos dispositivos están sincronizados, el checksum es el mismo, como también podemos ver, el Fortigate01 está actuando como primario y el Fortigate02 como secundario:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_13.png?ssl=1" data-lbwps-width="1914" data-lbwps-height="619" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_13-1536x497.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13293" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-activo/fhaaa_13#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_13.png?fit=1914%2C619&amp;ssl=1" data-orig-size="1914,619" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaaa_13" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_13.png?fit=640%2C207&amp;ssl=1" class="aligncenter size-full wp-image-13293" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_13.png?resize=640%2C207&#038;ssl=1" alt="" width="640" height="207" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_13.png?w=1914&amp;ssl=1 1914w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_13.png?resize=595%2C192&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_13.png?resize=960%2C310&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_13.png?resize=768%2C248&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_13.png?resize=1536%2C497&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_13.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para ver de un solo vistazo el estado de nuestro Cluster HA, vamos a habilitar el siguiente panel, nos vamos a Dashboard y añadir:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_14.png?ssl=1" data-lbwps-width="498" data-lbwps-height="469" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_14.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13294" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-activo/fhaaa_14#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_14.png?fit=498%2C469&amp;ssl=1" data-orig-size="498,469" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaaa_14" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_14.png?fit=498%2C469&amp;ssl=1" class="aligncenter size-full wp-image-13294" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_14.png?resize=498%2C469&#038;ssl=1" alt="" width="498" height="469" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_15.png?ssl=1" data-lbwps-width="1602" data-lbwps-height="279" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_15-1536x268.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13295" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-activo/fhaaa_15#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_15.png?fit=1602%2C279&amp;ssl=1" data-orig-size="1602,279" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaaa_15" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_15.png?fit=640%2C111&amp;ssl=1" class="aligncenter size-full wp-image-13295" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_15.png?resize=640%2C111&#038;ssl=1" alt="" width="640" height="111" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_15.png?w=1602&amp;ssl=1 1602w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_15.png?resize=595%2C104&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_15.png?resize=960%2C167&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_15.png?resize=768%2C134&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_15.png?resize=1536%2C268&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_15.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Añadimos el Widget <strong>HA Status</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_16.png?ssl=1" data-lbwps-width="1886" data-lbwps-height="932" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_16-1536x759.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13296" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-activo/fhaaa_16#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_16.png?fit=1886%2C932&amp;ssl=1" data-orig-size="1886,932" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaaa_16" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_16.png?fit=640%2C316&amp;ssl=1" class="aligncenter size-full wp-image-13296" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_16.png?resize=640%2C316&#038;ssl=1" alt="" width="640" height="316" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_16.png?w=1886&amp;ssl=1 1886w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_16.png?resize=595%2C294&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_16.png?resize=960%2C474&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_16.png?resize=768%2C380&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_16.png?resize=1536%2C759&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_16.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_17.png?ssl=1" data-lbwps-width="1565" data-lbwps-height="275" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_17-1536x270.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13297" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-activo/fhaaa_17#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_17.png?fit=1565%2C275&amp;ssl=1" data-orig-size="1565,275" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaaa_17" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_17.png?fit=640%2C113&amp;ssl=1" class="aligncenter size-full wp-image-13297" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_17.png?resize=640%2C112&#038;ssl=1" alt="" width="640" height="112" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_17.png?w=1565&amp;ssl=1 1565w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_17.png?resize=595%2C105&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_17.png?resize=960%2C169&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_17.png?resize=768%2C135&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_17.png?resize=1536%2C270&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_17.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como podemos ver, de un solo vistazo podemos ver el estado del cluster HA:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_18.png?ssl=1" data-lbwps-width="700" data-lbwps-height="478" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_18.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13298" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-activo/fhaaa_18#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_18.png?fit=700%2C478&amp;ssl=1" data-orig-size="700,478" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaaa_18" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_18.png?fit=640%2C437&amp;ssl=1" class="aligncenter size-full wp-image-13298" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_18.png?resize=640%2C437&#038;ssl=1" alt="" width="640" height="437" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_18.png?w=700&amp;ssl=1 700w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_18.png?resize=595%2C406&amp;ssl=1 595w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora vamos a realizar una prueba, apagando el Fortigate01, para ver si el Fortigate02 coge el control como primario, y como podemos ver, todo funciona correctamente sin pérdida de servicio y el que estaba antes como secundario pasa a ser primario:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_19.png?ssl=1" data-lbwps-width="1908" data-lbwps-height="438" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_19-1536x353.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13299" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-activo/fhaaa_19#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_19.png?fit=1908%2C438&amp;ssl=1" data-orig-size="1908,438" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaaa_19" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_19.png?fit=640%2C147&amp;ssl=1" class="aligncenter size-full wp-image-13299" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_19.png?resize=640%2C147&#038;ssl=1" alt="" width="640" height="147" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_19.png?w=1908&amp;ssl=1 1908w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_19.png?resize=595%2C137&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_19.png?resize=960%2C220&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_19.png?resize=768%2C176&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_19.png?resize=1536%2C353&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_19.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Si volvemos a iniciar el Fortigate01, podemos ver que ahora tiene el rol de secundario, ya que el Uptime del Fortigate02 es mayor que el del Fortigate01:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_20.png?ssl=1" data-lbwps-width="1902" data-lbwps-height="405" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_20-1536x327.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13300" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-activo/fhaaa_20#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_20.png?fit=1902%2C405&amp;ssl=1" data-orig-size="1902,405" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaaa_20" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_20.png?fit=640%2C136&amp;ssl=1" class="aligncenter size-full wp-image-13300" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_20.png?resize=640%2C136&#038;ssl=1" alt="" width="640" height="136" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_20.png?w=1902&amp;ssl=1 1902w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_20.png?resize=595%2C127&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_20.png?resize=960%2C204&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_20.png?resize=768%2C164&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_20.png?resize=1536%2C327&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_20.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_21.png?ssl=1" data-lbwps-width="649" data-lbwps-height="427" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_21.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13301" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-activo/fhaaa_21#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_21.png?fit=649%2C427&amp;ssl=1" data-orig-size="649,427" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaaa_21" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_21.png?fit=640%2C421&amp;ssl=1" class="aligncenter size-full wp-image-13301" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_21.png?resize=640%2C421&#038;ssl=1" alt="" width="640" height="421" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_21.png?w=649&amp;ssl=1 649w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_21.png?resize=595%2C391&amp;ssl=1 595w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Si queremos que el Fortigate01 vuelva a coger el rol de primario, debemos de ejecutar este comando <strong>diagnose sys ha reset-uptime,</strong> lo que hace este comando es resetear el Uptime del dispositivo, en este caso del Fortigate02:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_22.png?ssl=1" data-lbwps-width="894" data-lbwps-height="246" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_22.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13302" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-activo/fhaaa_22#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_22.png?fit=894%2C246&amp;ssl=1" data-orig-size="894,246" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaaa_22" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_22.png?fit=640%2C176&amp;ssl=1" class="aligncenter size-full wp-image-13302" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_22.png?resize=640%2C176&#038;ssl=1" alt="" width="640" height="176" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_22.png?w=894&amp;ssl=1 894w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_22.png?resize=595%2C164&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_22.png?resize=768%2C211&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como podemos ver, el Fortigate01 vuelve a tener el rol de primario:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_23.png?ssl=1" data-lbwps-width="1909" data-lbwps-height="391" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_23-1536x315.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13303" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-activo/fhaaa_23#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_23.png?fit=1909%2C391&amp;ssl=1" data-orig-size="1909,391" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaaa_23" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_23.png?fit=640%2C131&amp;ssl=1" class="aligncenter size-full wp-image-13303" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_23.png?resize=640%2C131&#038;ssl=1" alt="" width="640" height="131" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_23.png?w=1909&amp;ssl=1 1909w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_23.png?resize=595%2C122&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_23.png?resize=960%2C197&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_23.png?resize=768%2C157&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_23.png?resize=1536%2C315&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_23.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_24.png?ssl=1" data-lbwps-width="639" data-lbwps-height="423" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_24.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13304" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-activo/fhaaa_24#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_24.png?fit=639%2C423&amp;ssl=1" data-orig-size="639,423" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaaa_24" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_24.png?fit=639%2C423&amp;ssl=1" class="aligncenter size-full wp-image-13304" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_24.png?resize=639%2C423&#038;ssl=1" alt="" width="639" height="423" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_24.png?w=639&amp;ssl=1 639w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_24.png?resize=595%2C394&amp;ssl=1 595w" sizes="auto, (max-width: 639px) 100vw, 639px" /></a></p>
<ul>
<li>Ahora, vamos a configurar el Monitor interfaces en el cluster HA, esto significa, que la interface que vamos a monitorizar, si pierde conexión con el Firewall primario, automáticamente éste Firewall pasará a ser el secundario, tomando el otro Firewall el control, por lo tanto, vamos a configurar como Monitor interface, nuestra LAN:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_25.png?ssl=1" data-lbwps-width="1248" data-lbwps-height="735" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_25.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13305" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-activo/fhaaa_25#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_25.png?fit=1248%2C735&amp;ssl=1" data-orig-size="1248,735" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaaa_25" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_25.png?fit=640%2C377&amp;ssl=1" class="aligncenter size-full wp-image-13305" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_25.png?resize=640%2C377&#038;ssl=1" alt="" width="640" height="377" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_25.png?w=1248&amp;ssl=1 1248w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_25.png?resize=595%2C350&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_25.png?resize=960%2C565&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_25.png?resize=768%2C452&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para terminar, vamos a ver como configurar las interfaces de management de cada Fortigate, ya que siempre que accedemos lo estamos haciendo sobre el dispositivo que tiene el rol de primario, estas interfaces de management nos van a permitir acceder a cada dispositivo por separado, para ello, accedemos a <strong>System &gt; HA </strong>seleccionamos el Fortigate con el rol de <strong>primario</strong> y <strong>Edit:</strong></li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_26.png?ssl=1" data-lbwps-width="1914" data-lbwps-height="434" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_26-1536x348.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13306" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-activo/fhaaa_26#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_26.png?fit=1914%2C434&amp;ssl=1" data-orig-size="1914,434" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaaa_26" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_26.png?fit=640%2C145&amp;ssl=1" class="aligncenter size-full wp-image-13306" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_26.png?resize=640%2C145&#038;ssl=1" alt="" width="640" height="145" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_26.png?w=1914&amp;ssl=1 1914w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_26.png?resize=595%2C135&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_26.png?resize=960%2C218&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_26.png?resize=768%2C174&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_26.png?resize=1536%2C348&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_26.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Habilitamos <strong>Management Interface Reservation</strong>, le indicamos el puerto, el gateway y la subred, al habilitar esta opción le estamos indicando al cluster que vamso a usar el puerto 9 de cada Fortigate para management y por lo tanto las configuraciones en este puerto no se van a sincronizar entre los dispositivos pertenecientes al cluster:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_39.png?ssl=1" data-lbwps-width="1236" data-lbwps-height="828" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_39.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13321" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-activo/fhaaa_39#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_39.png?fit=1236%2C828&amp;ssl=1" data-orig-size="1236,828" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaaa_39" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_39.png?fit=640%2C429&amp;ssl=1" class="aligncenter size-full wp-image-13321" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_39.png?resize=640%2C429&#038;ssl=1" alt="" width="640" height="429" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_39.png?w=1236&amp;ssl=1 1236w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_39.png?resize=595%2C399&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_39.png?resize=960%2C643&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_39.png?resize=768%2C514&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Una vez habilitado el puerto de management en el cluster (puerto9), vamos a configurar este puerto sobre el Fortigate con el rol de primario, para ello, accedemos a <strong>Network &gt; Interfaces &gt; port9 &gt; Edit:</strong></li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_28.png?ssl=1" data-lbwps-width="1898" data-lbwps-height="800" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_28-1536x647.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13308" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-activo/fhaaa_28#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_28.png?fit=1898%2C800&amp;ssl=1" data-orig-size="1898,800" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaaa_28" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_28.png?fit=640%2C270&amp;ssl=1" class="aligncenter size-full wp-image-13308" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_28.png?resize=640%2C270&#038;ssl=1" alt="" width="640" height="270" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_28.png?w=1898&amp;ssl=1 1898w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_28.png?resize=595%2C251&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_28.png?resize=960%2C405&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_28.png?resize=768%2C324&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_28.png?resize=1536%2C647&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_28.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Le indicamos un Alias, le asignamos el direccionamiento IP correspondiente, habilitamos los accesos y OK:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_29.png?ssl=1" data-lbwps-width="1240" data-lbwps-height="951" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_29.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13309" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-activo/fhaaa_29#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_29.png?fit=1240%2C951&amp;ssl=1" data-orig-size="1240,951" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaaa_29" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_29.png?fit=640%2C491&amp;ssl=1" class="aligncenter size-full wp-image-13309" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_29.png?resize=640%2C491&#038;ssl=1" alt="" width="640" height="491" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_29.png?w=1240&amp;ssl=1 1240w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_29.png?resize=595%2C456&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_29.png?resize=960%2C736&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_29.png?resize=768%2C589&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como podemos ver ya tenemos configurado el puerto de management sobre el Fortigate primario:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_30.png?ssl=1" data-lbwps-width="1354" data-lbwps-height="585" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_30.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13310" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-activo/fhaaa_30#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_30.png?fit=1354%2C585&amp;ssl=1" data-orig-size="1354,585" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaaa_30" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_30.png?fit=640%2C277&amp;ssl=1" class="aligncenter size-full wp-image-13310" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_30.png?resize=640%2C277&#038;ssl=1" alt="" width="640" height="277" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_30.png?w=1354&amp;ssl=1 1354w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_30.png?resize=595%2C257&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_30.png?resize=960%2C415&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_30.png?resize=768%2C332&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_30.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora ya podemos acceder a través de la IP de management sobre el Fortigate01:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_31.png?ssl=1" data-lbwps-width="1913" data-lbwps-height="726" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_31-1536x583.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13311" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-activo/fhaaa_31#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_31.png?fit=1913%2C726&amp;ssl=1" data-orig-size="1913,726" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaaa_31" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_31.png?fit=640%2C243&amp;ssl=1" class="aligncenter size-full wp-image-13311" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_31.png?resize=640%2C243&#038;ssl=1" alt="" width="640" height="243" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_31.png?w=1913&amp;ssl=1 1913w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_31.png?resize=595%2C226&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_31.png?resize=960%2C364&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_31.png?resize=768%2C291&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_31.png?resize=1536%2C583&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_31.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora vamos a configurar la interface de management del Fortigate que tiene el rol de secundario, para ello desde la consola web nos abrimos una consola CLI:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_32.png?ssl=1" data-lbwps-width="1910" data-lbwps-height="348" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_32-1536x280.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13312" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-activo/fhaaa_32#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_32.png?fit=1910%2C348&amp;ssl=1" data-orig-size="1910,348" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaaa_32" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_32.png?fit=640%2C117&amp;ssl=1" class="aligncenter size-full wp-image-13312" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_32.png?resize=640%2C117&#038;ssl=1" alt="" width="640" height="117" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_32.png?w=1910&amp;ssl=1 1910w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_32.png?resize=595%2C108&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_32.png?resize=960%2C175&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_32.png?resize=768%2C140&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_32.png?resize=1536%2C280&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_32.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ejecutamos el comando <strong>execute ha manage ?</strong> y cómo podemos ver nos indica que el dispositivo 0 es el secundario:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_33.png?ssl=1" data-lbwps-width="656" data-lbwps-height="242" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_33.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13313" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-activo/fhaaa_33#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_33.png?fit=656%2C242&amp;ssl=1" data-orig-size="656,242" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaaa_33" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_33.png?fit=640%2C236&amp;ssl=1" class="aligncenter size-full wp-image-13313" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_33.png?resize=640%2C236&#038;ssl=1" alt="" width="640" height="236" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_33.png?w=656&amp;ssl=1 656w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_33.png?resize=595%2C219&amp;ssl=1 595w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Por lo tanto, para acceder al Fortigate secundario debemos de ejecutar el comando <strong>execute ha manage 0 admin</strong> el admin es el usuario que tenemos dado de alta en nuestro Fortigate secundario con permisos administrativos, y cómo podemos ver ya estamos dentro del Fortigate secundario (FORTIGATE02):</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_34.png?ssl=1" data-lbwps-width="882" data-lbwps-height="317" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_34.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13314" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-activo/fhaaa_34#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_34.png?fit=882%2C317&amp;ssl=1" data-orig-size="882,317" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaaa_34" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_34.png?fit=640%2C230&amp;ssl=1" class="aligncenter size-full wp-image-13314" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_34.png?resize=640%2C230&#038;ssl=1" alt="" width="640" height="230" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_34.png?w=882&amp;ssl=1 882w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_34.png?resize=595%2C214&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_34.png?resize=768%2C276&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora ya le podemos asignar el direccionamiento IP al puerto que configuramos para management (puerto9), con el comando <strong>config system interface </strong>accedemos al modo de configuración de interface, con <strong>edit port9 </strong>accedemos a la configuración del puerto 9, con <strong>set ip 192.168.99.221 255.255.255.0</strong> le asignamos el direccionamiento IP, con <strong>set allowaccess ping https http ssh fgfm </strong>le habilitamos los accesos y con <strong>end</strong> salimos de las configuraciones:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_35.png?ssl=1" data-lbwps-width="873" data-lbwps-height="485" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_35.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13315" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-activo/fhaaa_35#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_35.png?fit=873%2C485&amp;ssl=1" data-orig-size="873,485" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaaa_35" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_35.png?fit=640%2C356&amp;ssl=1" class="aligncenter size-full wp-image-13315" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_35.png?resize=640%2C356&#038;ssl=1" alt="" width="640" height="356" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_35.png?w=873&amp;ssl=1 873w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_35.png?resize=595%2C331&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_35.png?resize=768%2C427&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Con el comando <strong>show system interface</strong> podemos ver las configuraciones realizadas:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_36.png?ssl=1" data-lbwps-width="783" data-lbwps-height="499" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_36.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13316" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-activo/fhaaa_36#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_36.png?fit=783%2C499&amp;ssl=1" data-orig-size="783,499" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaaa_36" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_36.png?fit=640%2C408&amp;ssl=1" class="aligncenter size-full wp-image-13316" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_36.png?resize=640%2C408&#038;ssl=1" alt="" width="640" height="408" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_36.png?w=783&amp;ssl=1 783w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_36.png?resize=595%2C379&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_36.png?resize=768%2C489&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_37.png?ssl=1" data-lbwps-width="801" data-lbwps-height="698" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_37.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13317" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-activo/fhaaa_37#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_37.png?fit=801%2C698&amp;ssl=1" data-orig-size="801,698" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaaa_37" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_37.png?fit=640%2C558&amp;ssl=1" class="aligncenter size-full wp-image-13317" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_37.png?resize=640%2C558&#038;ssl=1" alt="" width="640" height="558" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_37.png?w=801&amp;ssl=1 801w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_37.png?resize=595%2C518&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_37.png?resize=768%2C669&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora ya podemos acceder a través de la IP de management sobre el Fortigate02, y cómo podemos ver ya tenemos el puerto de management configurado (puerto9):</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_38.png?ssl=1" data-lbwps-width="1898" data-lbwps-height="952" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_38-1536x770.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13318" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-activo/fhaaa_38#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_38.png?fit=1898%2C952&amp;ssl=1" data-orig-size="1898,952" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaaa_38" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_38.png?fit=640%2C321&amp;ssl=1" class="aligncenter size-full wp-image-13318" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_38.png?resize=640%2C321&#038;ssl=1" alt="" width="640" height="321" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_38.png?w=1898&amp;ssl=1 1898w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_38.png?resize=595%2C298&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_38.png?resize=960%2C482&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_38.png?resize=768%2C385&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_38.png?resize=1536%2C770&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaaa_38.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p>&nbsp;</p>
<p>Saludos y espero que os resulte de ayuda <img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f609.png" alt="😉" class="wp-smiley" style="height: 1em; max-height: 1em;" /></p>
<p>La entrada <a href="https://blog.ragasys.es/fortigate-ha-activo-activo">Fortigate HA ACTIVO – ACTIVO</a> se publicó primero en <a href="https://blog.ragasys.es">RAGASYS SISTEMAS</a>.</p>
]]></content:encoded>
					
					<wfw:commentRss>https://blog.ragasys.es/fortigate-ha-activo-activo/feed</wfw:commentRss>
			<slash:comments>1</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">13280</post-id>	</item>
		<item>
		<title>Fortigate HA ACTIVO &#8211; PASIVO</title>
		<link>https://blog.ragasys.es/fortigate-ha-activo-pasivo</link>
					<comments>https://blog.ragasys.es/fortigate-ha-activo-pasivo#comments</comments>
		
		<dc:creator><![CDATA[Jose Ramon Ramos Gata]]></dc:creator>
		<pubDate>Tue, 20 Apr 2021 07:47:18 +0000</pubDate>
				<category><![CDATA[Cluster]]></category>
		<category><![CDATA[Firewall]]></category>
		<category><![CDATA[Fortigate]]></category>
		<category><![CDATA[Fortinet]]></category>
		<category><![CDATA[HA]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[Routing]]></category>
		<category><![CDATA[Switching]]></category>
		<category><![CDATA[TIC]]></category>
		<category><![CDATA[Routing & Switching]]></category>
		<guid isPermaLink="false">https://blog.ragasys.es/?p=13249</guid>

					<description><![CDATA[<p>Hola a tod@s, En este post vamos a ver como configurar dos Firewall Fortigate en HA (Alta Disponibilidad) en modo Activo-Pasivo: Vamos a utilizar dos Interfaces de cada dispositivo para HA para vincularlos y sincronizarlos. En HA uno de los&#8230; <a href="https://blog.ragasys.es/fortigate-ha-activo-pasivo" class="more-link">Continuar leyendo <span class="meta-nav">&#8594;</span></a></p>
<p>La entrada <a href="https://blog.ragasys.es/fortigate-ha-activo-pasivo">Fortigate HA ACTIVO &#8211; PASIVO</a> se publicó primero en <a href="https://blog.ragasys.es">RAGASYS SISTEMAS</a>.</p>
]]></description>
										<content:encoded><![CDATA[<p>Hola a tod@s,</p>
<p>En este post vamos a ver como configurar dos Firewall Fortigate en HA (Alta Disponibilidad) en modo Activo-Pasivo:</p>
<ul>
<li>Vamos a utilizar dos Interfaces de cada dispositivo para HA para vincularlos y sincronizarlos.</li>
<li>En HA uno de los Fortigate estará como primario y éste sincronizará su información con el otro Fortigate que será el secundario.</li>
<li>El link para el HA entre los Fortigate, que en este caso usaremos dos (HA1 y HA2) se llama Heartbeat y se utiliza para la sincronización y detección entre los equipos.</li>
<li>Tenemos dos modos de configurar HA: Activo-Pasivo y Activo-Activo.</li>
</ul>
<p>En este primer post vamos a ver el modo Activo-Pasivo, en este modo solo el dispositivo primario procesa el tráfico, el otro dispositivo está en modo de espera y sólo entrará a funcionar en caso de caída del primario, toda la configuración realizada en el dispositivo primario se sincronizará con el dispositivo secundario.</p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_1.png?ssl=1" data-lbwps-width="1152" data-lbwps-height="442" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaap_1.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13250" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-pasivo/fhaap_1#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_1.png?fit=1152%2C442&amp;ssl=1" data-orig-size="1152,442" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaap_1" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_1.png?fit=640%2C245&amp;ssl=1" class="aligncenter size-full wp-image-13250" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_1.png?resize=640%2C246&#038;ssl=1" alt="" width="640" height="246" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_1.png?w=1152&amp;ssl=1 1152w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_1.png?resize=595%2C228&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_1.png?resize=960%2C368&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_1.png?resize=768%2C295&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p>Vamos a ver que necesitamos para crear y configurar un cluster HA en Firewall FortiGates:</p>
<ul>
<li>Dos Fortigates del mismo modelo</li>
<li>Misma versión de FortiOS en ambos equipos</li>
<li>Mismas licencias</li>
<li>Un link entre los equipos que componen el cluster HA, en este caso vamos a utilizar dos</li>
<li>Las mismas interfaces deben de estar conectadas al mismo dominio de broadcast, es decir, los puertos usados deben de ser los mismos en ambos dispositivos y conectados en el mismo segmento de red.</li>
</ul>
<p>&nbsp;</p>
<ul>
<li>Para empezar con la configuración de nuestro cluster HA Activo-Pasivo, vamos a realizar las configuraciones básicas sobre uno de nuestros Fortigate, que actuará como primario, el otro Fortigate lo dejamos con las configuraciones de fábrica, <a href="https://blog.ragasys.es/fortigate-configuracion-inicial-y-puesta-en-marcha" target="_blank" rel="noopener">en este link podemos ver la configuración inicial y puesta en marcha</a>.</li>
<li>Aquí vemos como tenemos configurado el hostname y las interfaces de red del primer Fortigate (LAN y WAN):</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_2.png?ssl=1" data-lbwps-width="737" data-lbwps-height="438" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaap_2.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13251" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-pasivo/fhaap_2#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_2.png?fit=737%2C438&amp;ssl=1" data-orig-size="737,438" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaap_2" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_2.png?fit=640%2C380&amp;ssl=1" class="aligncenter size-full wp-image-13251" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_2.png?resize=640%2C380&#038;ssl=1" alt="" width="640" height="380" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_2.png?w=737&amp;ssl=1 737w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_2.png?resize=595%2C354&amp;ssl=1 595w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_3.png?ssl=1" data-lbwps-width="736" data-lbwps-height="416" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaap_3.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13252" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-pasivo/fhaap_3#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_3.png?fit=736%2C416&amp;ssl=1" data-orig-size="736,416" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaap_3" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_3.png?fit=640%2C362&amp;ssl=1" class="aligncenter size-full wp-image-13252" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_3.png?resize=640%2C362&#038;ssl=1" alt="" width="640" height="362" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_3.png?w=736&amp;ssl=1 736w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_3.png?resize=595%2C336&amp;ssl=1 595w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Del segundo Fortigate, está tal y como viene de fábrica:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_4.png?ssl=1" data-lbwps-width="735" data-lbwps-height="295" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaap_4.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13253" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-pasivo/fhaap_4#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_4.png?fit=735%2C295&amp;ssl=1" data-orig-size="735,295" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaap_4" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_4.png?fit=640%2C257&amp;ssl=1" class="aligncenter size-full wp-image-13253" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_4.png?resize=640%2C257&#038;ssl=1" alt="" width="640" height="257" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_4.png?w=735&amp;ssl=1 735w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_4.png?resize=595%2C239&amp;ssl=1 595w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Lo primero que vamos a realizar es configurar sobre el Fortigate01 el nombre de las interfaces de red que van a participar en el cluster HA, se llaman interfaces de Heartbeat y se utilizan para la sincronización y detección entre los equipos, utilizaremos los puertos 4 y 5:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_5.png?ssl=1" data-lbwps-width="737" data-lbwps-height="411" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaap_5.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13254" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-pasivo/fhaap_5#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_5.png?fit=737%2C411&amp;ssl=1" data-orig-size="737,411" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaap_5" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_5.png?fit=640%2C357&amp;ssl=1" class="aligncenter size-full wp-image-13254" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_5.png?resize=640%2C357&#038;ssl=1" alt="" width="640" height="357" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_5.png?w=737&amp;ssl=1 737w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_5.png?resize=595%2C332&amp;ssl=1 595w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora sobre <strong>System &gt; HA &gt; </strong>seleccionamos el modo que nos interese, en este caso<strong> Active-Passive:</strong></li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_6.png?ssl=1" data-lbwps-width="736" data-lbwps-height="412" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaap_6.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13255" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-pasivo/fhaap_6#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_6.png?fit=736%2C412&amp;ssl=1" data-orig-size="736,412" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaap_6" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_6.png?fit=640%2C358&amp;ssl=1" class="aligncenter size-full wp-image-13255" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_6.png?resize=640%2C358&#038;ssl=1" alt="" width="640" height="358" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_6.png?w=736&amp;ssl=1 736w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_6.png?resize=595%2C333&amp;ssl=1 595w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre <strong>High Availability </strong>le indicamos el modo y la prioridad, sobre <strong>Cluster Settings </strong>le damos un nombre al cluster, le asignamos un password, habilitamos <strong>Session pickup</strong> para que automáticamente se pasen las sesiones de un Fortigate a otro y así los clientes no tengan que volver a reconectarse, el <strong>Monitor interfaces</strong> lo vamos a habilitar más adelante y explicaremos de que se trata y sobre <strong>Heartbeat Interfaces</strong> vamos a configurar las interfaces que van a participar en el cluster HA, sobre <strong>Heartbeat Interface Priority </strong>vamos a configurar las prioridades de las interfaces de Heartbeat, que en este caso el port4 va a tener prioridad sobre el port5:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_7.png?ssl=1" data-lbwps-width="736" data-lbwps-height="431" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaap_7.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13256" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-pasivo/fhaap_7#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_7.png?fit=736%2C431&amp;ssl=1" data-orig-size="736,431" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaap_7" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_7.png?fit=640%2C375&amp;ssl=1" class="aligncenter size-full wp-image-13256" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_7.png?resize=640%2C375&#038;ssl=1" alt="" width="640" height="375" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_7.png?w=736&amp;ssl=1 736w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_7.png?resize=595%2C348&amp;ssl=1 595w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora podemos ver que en <strong>System &gt; HA</strong> nos muestra los puertos 4 y 5 con un corazón indicando que son los puertos de Heartbeat para el cluster:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_8.png?ssl=1" data-lbwps-width="737" data-lbwps-height="243" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaap_8.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13257" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-pasivo/fhaap_8#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_8.png?fit=737%2C243&amp;ssl=1" data-orig-size="737,243" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaap_8" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_8.png?fit=640%2C211&amp;ssl=1" class="aligncenter size-full wp-image-13257" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_8.png?resize=640%2C211&#038;ssl=1" alt="" width="640" height="211" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_8.png?w=737&amp;ssl=1 737w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_8.png?resize=595%2C196&amp;ssl=1 595w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre el Fortigate01 ya tenemos las configuraciones de HA realizadas, ahora debemos de configurar el Fortigate02, y como el nombre del host no se sincroniza, es lo primero que tenemos que configurar, en <strong>System &gt; Settings</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_9.png?ssl=1" data-lbwps-width="737" data-lbwps-height="542" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaap_9.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13258" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-pasivo/fhaap_9#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_9.png?fit=737%2C542&amp;ssl=1" data-orig-size="737,542" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaap_9" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_9.png?fit=640%2C471&amp;ssl=1" class="aligncenter size-full wp-image-13258" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_9.png?resize=640%2C471&#038;ssl=1" alt="" width="640" height="471" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_9.png?w=737&amp;ssl=1 737w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_9.png?resize=595%2C438&amp;ssl=1 595w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora sobre <strong>System &gt; HA</strong> realizamos las mismas configuraciones que hemos hecho sobre el Fortigate01, excepto que en la prioridad del dispositivo la vamos a bajar a 100, clic sobre OK:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_10.png?ssl=1" data-lbwps-width="737" data-lbwps-height="424" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaap_10.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13259" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-pasivo/fhaap_10#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_10.png?fit=737%2C424&amp;ssl=1" data-orig-size="737,424" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaap_10" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_10.png?fit=640%2C368&amp;ssl=1" class="aligncenter size-full wp-image-13259" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_10.png?resize=640%2C368&#038;ssl=1" alt="" width="640" height="368" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_10.png?w=737&amp;ssl=1 737w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_10.png?resize=595%2C342&amp;ssl=1 595w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como podemos ver perdemos conexión con nuestro Fortigate02, ya que la dirección IP que tenía, ha desaparecido al unirlo al cluster, ahora estos dos dispositivos es como si fuesen uno solo y los dos van a tener las mismas configuraciones:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_11.png?ssl=1" data-lbwps-width="737" data-lbwps-height="399" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaap_11.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13260" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-pasivo/fhaap_11#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_11.png?fit=737%2C399&amp;ssl=1" data-orig-size="737,399" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaap_11" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_11.png?fit=640%2C346&amp;ssl=1" class="aligncenter size-full wp-image-13260" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_11.png?resize=640%2C346&#038;ssl=1" alt="" width="640" height="346" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_11.png?w=737&amp;ssl=1 737w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_11.png?resize=595%2C322&amp;ssl=1 595w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Sobre el Fortigate01 accedemos a <strong>System &gt; HA </strong>y podemos ver que ya tenemos el segundo dispositivo unido al cluster, aunque todavía está sincronizando, esto nos lo muestra muy claro el checksum, que como podemos observar son números diferentes, ya que al no estar sincronizados todavía cada dispositivo tiene una configuración:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_12.png?ssl=1" data-lbwps-width="735" data-lbwps-height="239" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaap_12.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13261" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-pasivo/fhaap_12#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_12.png?fit=735%2C239&amp;ssl=1" data-orig-size="735,239" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaap_12" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_12.png?fit=640%2C208&amp;ssl=1" class="aligncenter size-full wp-image-13261" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_12.png?resize=640%2C208&#038;ssl=1" alt="" width="640" height="208" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_12.png?w=735&amp;ssl=1 735w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_12.png?resize=595%2C193&amp;ssl=1 595w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Pasados unos minutos, ya podemos ver que los dos dispositivos están sincronizados, el checksum es el mismo, como también podemos ver, el Fortigate01 está actuando como primario y el Fortigate02 como secundario:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_13.png?ssl=1" data-lbwps-width="737" data-lbwps-height="245" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaap_13.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13262" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-pasivo/fhaap_13#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_13.png?fit=737%2C245&amp;ssl=1" data-orig-size="737,245" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaap_13" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_13.png?fit=640%2C213&amp;ssl=1" class="aligncenter size-full wp-image-13262" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_13.png?resize=640%2C213&#038;ssl=1" alt="" width="640" height="213" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_13.png?w=737&amp;ssl=1 737w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_13.png?resize=595%2C198&amp;ssl=1 595w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para ver de un solo vistazo el estado de nuestro Cluster HA, vamos a habilitar el siguiente panel, nos vamos a Dashboard y añadir:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_14.png?ssl=1" data-lbwps-width="498" data-lbwps-height="469" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaap_14.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13263" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-pasivo/fhaap_14#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_14.png?fit=498%2C469&amp;ssl=1" data-orig-size="498,469" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaap_14" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_14.png?fit=498%2C469&amp;ssl=1" class="aligncenter size-full wp-image-13263" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_14.png?resize=498%2C469&#038;ssl=1" alt="" width="498" height="469" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_15.png?ssl=1" data-lbwps-width="737" data-lbwps-height="129" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaap_15.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13264" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-pasivo/fhaap_15#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_15.png?fit=737%2C129&amp;ssl=1" data-orig-size="737,129" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaap_15" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_15.png?fit=640%2C112&amp;ssl=1" class="aligncenter size-full wp-image-13264" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_15.png?resize=640%2C112&#038;ssl=1" alt="" width="640" height="112" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_15.png?w=737&amp;ssl=1 737w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_15.png?resize=595%2C104&amp;ssl=1 595w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Añadimos el Widget <strong>HA Status</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_16.png?ssl=1" data-lbwps-width="735" data-lbwps-height="363" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaap_16.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13265" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-pasivo/fhaap_16#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_16.png?fit=735%2C363&amp;ssl=1" data-orig-size="735,363" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaap_16" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_16.png?fit=640%2C316&amp;ssl=1" class="aligncenter size-full wp-image-13265" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_16.png?resize=640%2C316&#038;ssl=1" alt="" width="640" height="316" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_16.png?w=735&amp;ssl=1 735w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_16.png?resize=595%2C294&amp;ssl=1 595w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_17.png?ssl=1" data-lbwps-width="737" data-lbwps-height="129" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaap_17.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13266" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-pasivo/fhaap_17#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_17.png?fit=737%2C129&amp;ssl=1" data-orig-size="737,129" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaap_17" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_17.png?fit=640%2C112&amp;ssl=1" class="aligncenter size-full wp-image-13266" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_17.png?resize=640%2C112&#038;ssl=1" alt="" width="640" height="112" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_17.png?w=737&amp;ssl=1 737w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_17.png?resize=595%2C104&amp;ssl=1 595w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como podemos ver, de un solo vistazo podemos ver el estado del cluster HA:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_18.png?ssl=1" data-lbwps-width="737" data-lbwps-height="472" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaap_18.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13267" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-pasivo/fhaap_18#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_18.png?fit=737%2C472&amp;ssl=1" data-orig-size="737,472" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaap_18" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_18.png?fit=640%2C410&amp;ssl=1" class="aligncenter size-full wp-image-13267" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_18.png?resize=640%2C410&#038;ssl=1" alt="" width="640" height="410" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_18.png?w=737&amp;ssl=1 737w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_18.png?resize=595%2C381&amp;ssl=1 595w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora vamos a realizar una prueba, apagando el Fortigate01, para ver si el Fortigate02 coge el control como primario, y como podemos ver, todo funciona correctamente sin pérdida de servicio y el que estaba antes como secundario pasa a ser primario:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_19.png?ssl=1" data-lbwps-width="735" data-lbwps-height="164" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaap_19.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13268" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-pasivo/fhaap_19#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_19.png?fit=735%2C164&amp;ssl=1" data-orig-size="735,164" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaap_19" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_19.png?fit=640%2C143&amp;ssl=1" class="aligncenter size-full wp-image-13268" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_19.png?resize=640%2C143&#038;ssl=1" alt="" width="640" height="143" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_19.png?w=735&amp;ssl=1 735w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_19.png?resize=595%2C133&amp;ssl=1 595w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Si volvemos a iniciar el Fortigate01, podemos ver que ahora tiene el rol de secundario, ya que el Uptime del Fortigate02 es mayor que el del Fortigate01:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_20.png?ssl=1" data-lbwps-width="735" data-lbwps-height="157" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaap_20.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13269" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-pasivo/fhaap_20#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_20.png?fit=735%2C157&amp;ssl=1" data-orig-size="735,157" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaap_20" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_20.png?fit=640%2C137&amp;ssl=1" class="aligncenter size-full wp-image-13269" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_20.png?resize=640%2C137&#038;ssl=1" alt="" width="640" height="137" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_20.png?w=735&amp;ssl=1 735w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_20.png?resize=595%2C127&amp;ssl=1 595w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_21.png?ssl=1" data-lbwps-width="737" data-lbwps-height="421" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaap_21.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13270" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-pasivo/fhaap_21#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_21.png?fit=737%2C421&amp;ssl=1" data-orig-size="737,421" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaap_21" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_21.png?fit=640%2C366&amp;ssl=1" class="aligncenter size-full wp-image-13270" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_21.png?resize=640%2C366&#038;ssl=1" alt="" width="640" height="366" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_21.png?w=737&amp;ssl=1 737w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_21.png?resize=595%2C340&amp;ssl=1 595w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Si queremos que el Fortigate01 vuelva a coger el rol de primario, debemos de ejecutar este comando <strong>diagnose sys ha reset-uptime,</strong> lo que hace este comando es resetear el Uptime del dispositivo, en este caso del Fortigate02:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_22.png?ssl=1" data-lbwps-width="737" data-lbwps-height="203" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaap_22.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13271" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-pasivo/fhaap_22#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_22.png?fit=737%2C203&amp;ssl=1" data-orig-size="737,203" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaap_22" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_22.png?fit=640%2C176&amp;ssl=1" class="aligncenter size-full wp-image-13271" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_22.png?resize=640%2C176&#038;ssl=1" alt="" width="640" height="176" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_22.png?w=737&amp;ssl=1 737w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_22.png?resize=595%2C164&amp;ssl=1 595w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como podemos ver, el Fortigate01 vuelve a tener el rol de primario:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_23.png?ssl=1" data-lbwps-width="735" data-lbwps-height="145" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaap_23.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13272" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-pasivo/fhaap_23#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_23.png?fit=735%2C145&amp;ssl=1" data-orig-size="735,145" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaap_23" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_23.png?fit=640%2C126&amp;ssl=1" class="aligncenter size-full wp-image-13272" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_23.png?resize=640%2C126&#038;ssl=1" alt="" width="640" height="126" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_23.png?w=735&amp;ssl=1 735w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_23.png?resize=595%2C117&amp;ssl=1 595w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_24.png?ssl=1" data-lbwps-width="672" data-lbwps-height="448" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaap_24.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13273" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-pasivo/fhaap_24#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_24.png?fit=672%2C448&amp;ssl=1" data-orig-size="672,448" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaap_24" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_24.png?fit=640%2C427&amp;ssl=1" class="aligncenter size-full wp-image-13273" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_24.png?resize=640%2C427&#038;ssl=1" alt="" width="640" height="427" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_24.png?w=672&amp;ssl=1 672w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_24.png?resize=595%2C397&amp;ssl=1 595w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para terminar, vamos a configurar el Monitor interfaces en el cluster HA, esto significa, que la interface que vamos a monitorizar, si pierde conexión con el Firewall primario, automáticamente éste Firewall pasará a ser el secundario, tomando el otro Firewall el control, por lo tanto, vamos a configurar como Monitor interface, nuestra LAN:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_25.png?ssl=1" data-lbwps-width="737" data-lbwps-height="431" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2021/04/fhaap_25.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="13274" data-permalink="https://blog.ragasys.es/fortigate-ha-activo-pasivo/fhaap_25#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_25.png?fit=737%2C431&amp;ssl=1" data-orig-size="737,431" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="fhaap_25" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_25.png?fit=640%2C374&amp;ssl=1" class="aligncenter size-full wp-image-13274" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_25.png?resize=640%2C374&#038;ssl=1" alt="" width="640" height="374" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_25.png?w=737&amp;ssl=1 737w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2021/04/fhaap_25.png?resize=595%2C348&amp;ssl=1 595w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p>&nbsp;</p>
<p>Saludos y espero que os sea de ayuda <img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f609.png" alt="😉" class="wp-smiley" style="height: 1em; max-height: 1em;" /></p>
<p>La entrada <a href="https://blog.ragasys.es/fortigate-ha-activo-pasivo">Fortigate HA ACTIVO &#8211; PASIVO</a> se publicó primero en <a href="https://blog.ragasys.es">RAGASYS SISTEMAS</a>.</p>
]]></content:encoded>
					
					<wfw:commentRss>https://blog.ragasys.es/fortigate-ha-activo-pasivo/feed</wfw:commentRss>
			<slash:comments>8</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">13249</post-id>	</item>
		<item>
		<title>Configuración Fortigate – Limitar ancho de banda con Traffic Shaping</title>
		<link>https://blog.ragasys.es/configuracion-fortigate-limitar-ancho-de-banda-con-traffic-shaping</link>
					<comments>https://blog.ragasys.es/configuracion-fortigate-limitar-ancho-de-banda-con-traffic-shaping#comments</comments>
		
		<dc:creator><![CDATA[Jose Ramon Ramos Gata]]></dc:creator>
		<pubDate>Mon, 20 Apr 2020 06:57:12 +0000</pubDate>
				<category><![CDATA[Bandwidth]]></category>
		<category><![CDATA[Firewall]]></category>
		<category><![CDATA[Fortigate]]></category>
		<category><![CDATA[Fortinet]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[Routing]]></category>
		<category><![CDATA[TIC]]></category>
		<category><![CDATA[Routing & Switching]]></category>
		<guid isPermaLink="false">https://blog.ragasys.es/?p=10801</guid>

					<description><![CDATA[<p>Hola a tod@s. En este post vamos a ver como limitar el ancho de banda en nuestras conexiones, tanto de subida como de bajada, utilizando Traffic Shaping. Lo primero que debemos realizar es habilitar el Traffic Shapping, para ello nos&#8230; <a href="https://blog.ragasys.es/configuracion-fortigate-limitar-ancho-de-banda-con-traffic-shaping" class="more-link">Continuar leyendo <span class="meta-nav">&#8594;</span></a></p>
<p>La entrada <a href="https://blog.ragasys.es/configuracion-fortigate-limitar-ancho-de-banda-con-traffic-shaping">Configuración Fortigate – Limitar ancho de banda con Traffic Shaping</a> se publicó primero en <a href="https://blog.ragasys.es">RAGASYS SISTEMAS</a>.</p>
]]></description>
										<content:encoded><![CDATA[<p>Hola a tod@s.</p>
<p>En este post vamos a ver como limitar el ancho de banda en nuestras conexiones, tanto de subida como de bajada, utilizando Traffic Shaping.</p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_1.png?ssl=1" data-lbwps-width="775" data-lbwps-height="360" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_1.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="10802" data-permalink="https://blog.ragasys.es/configuracion-fortigate-limitar-ancho-de-banda-con-traffic-shaping/cfladbcts_1#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_1.png?fit=775%2C360&amp;ssl=1" data-orig-size="775,360" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfladbcts_1" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_1.png?fit=640%2C297&amp;ssl=1" class="aligncenter size-full wp-image-10802" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_1.png?resize=640%2C297&#038;ssl=1" alt="" width="640" height="297" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_1.png?w=775&amp;ssl=1 775w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_1.png?resize=595%2C276&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_1.png?resize=768%2C357&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Lo primero que debemos realizar es habilitar el Traffic Shapping, para ello nos vamos a <strong>Sistema &gt; Visibilidad de Característica &gt; Características adicionales &gt; Modelado de tráfico &gt; Aplicar</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_2.png?ssl=1" data-lbwps-width="1378" data-lbwps-height="952" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_2.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="10803" data-permalink="https://blog.ragasys.es/configuracion-fortigate-limitar-ancho-de-banda-con-traffic-shaping/cfladbcts_2#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_2.png?fit=1378%2C952&amp;ssl=1" data-orig-size="1378,952" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfladbcts_2" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_2.png?fit=640%2C442&amp;ssl=1" class="aligncenter size-full wp-image-10803" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_2.png?resize=640%2C442&#038;ssl=1" alt="" width="640" height="442" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_2.png?w=1378&amp;ssl=1 1378w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_2.png?resize=595%2C411&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_2.png?resize=960%2C663&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_2.png?resize=768%2C531&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_2.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora vamos a crear los Formadores de tráfico, aquí vamos a definir el ancho de banda que utilizaremos en las políticas para limitar las conexiones, por defecto, vienen creadas 5 políticas:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_3.png?ssl=1" data-lbwps-width="1805" data-lbwps-height="959" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_3-1536x816.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="10804" data-permalink="https://blog.ragasys.es/configuracion-fortigate-limitar-ancho-de-banda-con-traffic-shaping/cfladbcts_3#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_3.png?fit=1805%2C959&amp;ssl=1" data-orig-size="1805,959" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfladbcts_3" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_3.png?fit=640%2C340&amp;ssl=1" class="aligncenter size-full wp-image-10804" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_3.png?resize=640%2C340&#038;ssl=1" alt="" width="640" height="340" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_3.png?w=1805&amp;ssl=1 1805w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_3.png?resize=595%2C316&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_3.png?resize=960%2C510&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_3.png?resize=768%2C408&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_3.png?resize=1536%2C816&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_3.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>La política de <strong>high-priority</strong> utiliza un ancho de banda de 1Gbps y le da máxima prioridad, la de <strong>medium-priority</strong> también utiliza 1Gbps pero le da prioridad media y la de <strong>low-priority</strong> también utiliza 1Gbps pero le da prioridad baja:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_4.png?ssl=1" data-lbwps-width="1444" data-lbwps-height="719" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_4.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="10805" data-permalink="https://blog.ragasys.es/configuracion-fortigate-limitar-ancho-de-banda-con-traffic-shaping/cfladbcts_4#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_4.png?fit=1444%2C719&amp;ssl=1" data-orig-size="1444,719" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfladbcts_4" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_4.png?fit=640%2C319&amp;ssl=1" class="aligncenter size-full wp-image-10805" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_4.png?resize=640%2C319&#038;ssl=1" alt="" width="640" height="319" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_4.png?w=1444&amp;ssl=1 1444w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_4.png?resize=595%2C296&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_4.png?resize=960%2C478&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_4.png?resize=768%2C382&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_4.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_5.png?ssl=1" data-lbwps-width="1447" data-lbwps-height="711" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_5.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="10806" data-permalink="https://blog.ragasys.es/configuracion-fortigate-limitar-ancho-de-banda-con-traffic-shaping/cfladbcts_5#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_5.png?fit=1447%2C711&amp;ssl=1" data-orig-size="1447,711" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfladbcts_5" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_5.png?fit=640%2C315&amp;ssl=1" class="aligncenter size-full wp-image-10806" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_5.png?resize=640%2C314&#038;ssl=1" alt="" width="640" height="314" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_5.png?w=1447&amp;ssl=1 1447w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_5.png?resize=595%2C292&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_5.png?resize=960%2C472&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_5.png?resize=768%2C377&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_5.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_6.png?ssl=1" data-lbwps-width="1445" data-lbwps-height="718" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_6.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="10807" data-permalink="https://blog.ragasys.es/configuracion-fortigate-limitar-ancho-de-banda-con-traffic-shaping/cfladbcts_6#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_6.png?fit=1445%2C718&amp;ssl=1" data-orig-size="1445,718" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfladbcts_6" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_6.png?fit=640%2C318&amp;ssl=1" class="aligncenter size-full wp-image-10807" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_6.png?resize=640%2C318&#038;ssl=1" alt="" width="640" height="318" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_6.png?w=1445&amp;ssl=1 1445w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_6.png?resize=595%2C296&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_6.png?resize=960%2C477&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_6.png?resize=768%2C382&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_6.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Nosotros nos vamos a crear distintos formadores de tráfico con los distintos anchos de banda que nos interese para nuestra infraestructura, voy a mostrar solo uno, ya que se configura siempre igual, nos vamos a <strong>Políticas y Objetos &gt; Formadores de Tráfico &gt; Crear Nuevo:</strong></li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_7.png?ssl=1" data-lbwps-width="691" data-lbwps-height="705" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_7.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="10808" data-permalink="https://blog.ragasys.es/configuracion-fortigate-limitar-ancho-de-banda-con-traffic-shaping/cfladbcts_7#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_7.png?fit=691%2C705&amp;ssl=1" data-orig-size="691,705" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfladbcts_7" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_7.png?fit=640%2C653&amp;ssl=1" class="aligncenter size-full wp-image-10808" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_7.png?resize=640%2C653&#038;ssl=1" alt="" width="640" height="653" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_7.png?w=691&amp;ssl=1 691w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_7.png?resize=595%2C607&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_7.png?resize=50%2C50&amp;ssl=1 50w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Nos creamos un formador de tráfico de 20Mbps:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_8.png?ssl=1" data-lbwps-width="1250" data-lbwps-height="723" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_8.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="10809" data-permalink="https://blog.ragasys.es/configuracion-fortigate-limitar-ancho-de-banda-con-traffic-shaping/cfladbcts_8#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_8.png?fit=1250%2C723&amp;ssl=1" data-orig-size="1250,723" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfladbcts_8" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_8.png?fit=640%2C370&amp;ssl=1" class="aligncenter size-full wp-image-10809" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_8.png?resize=640%2C370&#038;ssl=1" alt="" width="640" height="370" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_8.png?w=1250&amp;ssl=1 1250w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_8.png?resize=595%2C344&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_8.png?resize=960%2C555&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_8.png?resize=768%2C444&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Aquí vemos todos los que nos hemos creado:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_9.png?ssl=1" data-lbwps-width="1884" data-lbwps-height="936" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_9-1536x763.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="10810" data-permalink="https://blog.ragasys.es/configuracion-fortigate-limitar-ancho-de-banda-con-traffic-shaping/cfladbcts_9#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_9.png?fit=1884%2C936&amp;ssl=1" data-orig-size="1884,936" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfladbcts_9" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_9.png?fit=640%2C318&amp;ssl=1" class="aligncenter size-full wp-image-10810" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_9.png?resize=640%2C318&#038;ssl=1" alt="" width="640" height="318" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_9.png?w=1884&amp;ssl=1 1884w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_9.png?resize=595%2C296&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_9.png?resize=960%2C477&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_9.png?resize=768%2C382&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_9.png?resize=1536%2C763&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_9.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Una vez creados los formadores de tráfico vamos a ir configurando las políticas de modelado de tráfico, pare ello, accedemos a <strong>Políticas y Objetos &gt; Política de Modelado de tráfico &gt; Crear nuevo:</strong></li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_10.png?ssl=1" data-lbwps-width="898" data-lbwps-height="690" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_10.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="10811" data-permalink="https://blog.ragasys.es/configuracion-fortigate-limitar-ancho-de-banda-con-traffic-shaping/cfladbcts_10#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_10.png?fit=898%2C690&amp;ssl=1" data-orig-size="898,690" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfladbcts_10" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_10.png?fit=640%2C492&amp;ssl=1" class="aligncenter size-full wp-image-10811" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_10.png?resize=640%2C492&#038;ssl=1" alt="" width="640" height="492" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_10.png?w=898&amp;ssl=1 898w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_10.png?resize=595%2C457&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_10.png?resize=768%2C590&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>La primera política que vamos a crear será una política de salida a Internet a máxima velocidad para todas las conexiones, <strong>Shared shaper</strong> se refiere a la velocidad de <strong>Subida</strong> y <strong>Reverse shaper</strong> se refiere a la velocidad de <strong>Descarga</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_11.png?ssl=1" data-lbwps-width="1251" data-lbwps-height="820" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_11.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="10812" data-permalink="https://blog.ragasys.es/configuracion-fortigate-limitar-ancho-de-banda-con-traffic-shaping/cfladbcts_11#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_11.png?fit=1251%2C820&amp;ssl=1" data-orig-size="1251,820" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfladbcts_11" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_11.png?fit=640%2C419&amp;ssl=1" class="aligncenter size-full wp-image-10812" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_11.png?resize=640%2C420&#038;ssl=1" alt="" width="640" height="420" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_11.png?w=1251&amp;ssl=1 1251w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_11.png?resize=595%2C390&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_11.png?resize=960%2C629&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_11.png?resize=768%2C503&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora vamos a limitar la velocidad de subida y descarga para uno de nuestros equipos de la red LAN hacia Internet, con 10Mbps de subida y 20Mbps de descarga:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_12.png?ssl=1" data-lbwps-width="1253" data-lbwps-height="812" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_12.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="10813" data-permalink="https://blog.ragasys.es/configuracion-fortigate-limitar-ancho-de-banda-con-traffic-shaping/cfladbcts_12#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_12.png?fit=1253%2C812&amp;ssl=1" data-orig-size="1253,812" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfladbcts_12" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_12.png?fit=640%2C415&amp;ssl=1" class="aligncenter size-full wp-image-10813" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_12.png?resize=640%2C415&#038;ssl=1" alt="" width="640" height="415" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_12.png?w=1253&amp;ssl=1 1253w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_12.png?resize=595%2C386&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_12.png?resize=960%2C622&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_12.png?resize=768%2C498&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Esta nueva regla creada, la tenemos que mover por encima que la creada anteriormente, ya que se van ejecutando de arriba hacia abajo, y la primera regla que hemos creado es para la máxima velocidad:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_13.png?ssl=1" data-lbwps-width="1912" data-lbwps-height="675" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_13-1536x542.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="10814" data-permalink="https://blog.ragasys.es/configuracion-fortigate-limitar-ancho-de-banda-con-traffic-shaping/cfladbcts_13#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_13.png?fit=1912%2C675&amp;ssl=1" data-orig-size="1912,675" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfladbcts_13" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_13.png?fit=640%2C226&amp;ssl=1" class="aligncenter size-full wp-image-10814" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_13.png?resize=640%2C226&#038;ssl=1" alt="" width="640" height="226" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_13.png?w=1912&amp;ssl=1 1912w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_13.png?resize=595%2C210&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_13.png?resize=960%2C339&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_13.png?resize=768%2C271&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_13.png?resize=1536%2C542&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_13.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora si nos vamos a Internet desde este equipo y realizamos un test de velocidad de ancho de banda, podemos ver que las configuraciones se están aplicando correctamente:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_14.png?ssl=1" data-lbwps-width="1484" data-lbwps-height="624" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_14.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="10815" data-permalink="https://blog.ragasys.es/configuracion-fortigate-limitar-ancho-de-banda-con-traffic-shaping/cfladbcts_14#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_14.png?fit=1484%2C624&amp;ssl=1" data-orig-size="1484,624" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfladbcts_14" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_14.png?fit=640%2C269&amp;ssl=1" class="aligncenter size-full wp-image-10815" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_14.png?resize=640%2C269&#038;ssl=1" alt="" width="640" height="269" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_14.png?w=1484&amp;ssl=1 1484w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_14.png?resize=595%2C250&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_14.png?resize=960%2C404&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_14.png?resize=768%2C323&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_14.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora en lugar de limitar la conexión a Internet para un solo equipo, también lo podemos hacer para una red completa:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_15.png?ssl=1" data-lbwps-width="1240" data-lbwps-height="808" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_15.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="10816" data-permalink="https://blog.ragasys.es/configuracion-fortigate-limitar-ancho-de-banda-con-traffic-shaping/cfladbcts_15#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_15.png?fit=1240%2C808&amp;ssl=1" data-orig-size="1240,808" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfladbcts_15" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_15.png?fit=640%2C417&amp;ssl=1" class="aligncenter size-full wp-image-10816" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_15.png?resize=640%2C417&#038;ssl=1" alt="" width="640" height="417" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_15.png?w=1240&amp;ssl=1 1240w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_15.png?resize=595%2C388&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_15.png?resize=960%2C626&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_15.png?resize=768%2C500&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ponemos la política en el orden de secuencia que nos interese:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_16.png?ssl=1" data-lbwps-width="1915" data-lbwps-height="679" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_16-1536x545.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="10817" data-permalink="https://blog.ragasys.es/configuracion-fortigate-limitar-ancho-de-banda-con-traffic-shaping/cfladbcts_16#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_16.png?fit=1915%2C679&amp;ssl=1" data-orig-size="1915,679" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfladbcts_16" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_16.png?fit=640%2C227&amp;ssl=1" class="aligncenter size-full wp-image-10817" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_16.png?resize=640%2C227&#038;ssl=1" alt="" width="640" height="227" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_16.png?w=1915&amp;ssl=1 1915w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_16.png?resize=595%2C211&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_16.png?resize=960%2C340&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_16.png?resize=768%2C272&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_16.png?resize=1536%2C545&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_16.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Si volvemos a repetir el test de velocidad de ancho de banda sobre cualquiera de los equipos que se encuentren dentro de esta red podemos ver que la política se está aplicando correctamente:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_17.png?ssl=1" data-lbwps-width="1308" data-lbwps-height="598" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_17.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="10818" data-permalink="https://blog.ragasys.es/configuracion-fortigate-limitar-ancho-de-banda-con-traffic-shaping/cfladbcts_17#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_17.png?fit=1308%2C598&amp;ssl=1" data-orig-size="1308,598" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfladbcts_17" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_17.png?fit=640%2C293&amp;ssl=1" class="aligncenter size-full wp-image-10818" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_17.png?resize=640%2C293&#038;ssl=1" alt="" width="640" height="293" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_17.png?w=1308&amp;ssl=1 1308w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_17.png?resize=595%2C272&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_17.png?resize=960%2C439&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_17.png?resize=768%2C351&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Y ya para terminar vamos a limitar las subidas y las descargas a dos de nuestros servidores que se encuentran en la DMZ, uno es un servidor FTP y el otro un servidor de NEXTCLOUD con OnlyOffice.</li>
<li>Para el FTP nos creamos esta política de modelado de tráfico, dónde hemos limitado las subidas y las descargas a 20Mbps:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_18.png?ssl=1" data-lbwps-width="1242" data-lbwps-height="830" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_18.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="10819" data-permalink="https://blog.ragasys.es/configuracion-fortigate-limitar-ancho-de-banda-con-traffic-shaping/cfladbcts_18#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_18.png?fit=1242%2C830&amp;ssl=1" data-orig-size="1242,830" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfladbcts_18" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_18.png?fit=640%2C428&amp;ssl=1" class="aligncenter size-full wp-image-10819" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_18.png?resize=640%2C428&#038;ssl=1" alt="" width="640" height="428" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_18.png?w=1242&amp;ssl=1 1242w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_18.png?resize=595%2C398&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_18.png?resize=960%2C642&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_18.png?resize=768%2C513&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para el NEXTCLOUD nos creamos esta política de modelado de tráfico, dónde hemos limitado las subidas y las descargas a 50Mbps:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_19.png?ssl=1" data-lbwps-width="1243" data-lbwps-height="813" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_19.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="10820" data-permalink="https://blog.ragasys.es/configuracion-fortigate-limitar-ancho-de-banda-con-traffic-shaping/cfladbcts_19#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_19.png?fit=1243%2C813&amp;ssl=1" data-orig-size="1243,813" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfladbcts_19" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_19.png?fit=640%2C419&amp;ssl=1" class="aligncenter size-full wp-image-10820" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_19.png?resize=640%2C419&#038;ssl=1" alt="" width="640" height="419" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_19.png?w=1243&amp;ssl=1 1243w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_19.png?resize=595%2C389&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_19.png?resize=960%2C628&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_19.png?resize=768%2C502&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ponemos las políticas en el orden de secuencia que nos interese:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_20.png?ssl=1" data-lbwps-width="1914" data-lbwps-height="707" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_20-1536x567.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="10821" data-permalink="https://blog.ragasys.es/configuracion-fortigate-limitar-ancho-de-banda-con-traffic-shaping/cfladbcts_20#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_20.png?fit=1914%2C707&amp;ssl=1" data-orig-size="1914,707" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfladbcts_20" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_20.png?fit=640%2C237&amp;ssl=1" class="aligncenter size-full wp-image-10821" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_20.png?resize=640%2C236&#038;ssl=1" alt="" width="640" height="236" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_20.png?w=1914&amp;ssl=1 1914w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_20.png?resize=595%2C220&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_20.png?resize=960%2C355&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_20.png?resize=768%2C284&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_20.png?resize=1536%2C567&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_20.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Aquí tenemos opciones bastante interesantes, ya que podemos limitar por servicios, por aplicaciones, por categorías de URL:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_21.png?ssl=1" data-lbwps-width="1263" data-lbwps-height="717" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_21.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="10823" data-permalink="https://blog.ragasys.es/configuracion-fortigate-limitar-ancho-de-banda-con-traffic-shaping/cfladbcts_21#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_21.png?fit=1263%2C717&amp;ssl=1" data-orig-size="1263,717" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfladbcts_21" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_21.png?fit=640%2C363&amp;ssl=1" class="aligncenter size-full wp-image-10823" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_21.png?resize=640%2C363&#038;ssl=1" alt="" width="640" height="363" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_21.png?w=1263&amp;ssl=1 1263w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_21.png?resize=595%2C338&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_21.png?resize=960%2C545&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_21.png?resize=768%2C436&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_22.png?ssl=1" data-lbwps-width="1295" data-lbwps-height="720" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_22.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="10824" data-permalink="https://blog.ragasys.es/configuracion-fortigate-limitar-ancho-de-banda-con-traffic-shaping/cfladbcts_22#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_22.png?fit=1295%2C720&amp;ssl=1" data-orig-size="1295,720" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfladbcts_22" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_22.png?fit=640%2C356&amp;ssl=1" class="aligncenter size-full wp-image-10824" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_22.png?resize=640%2C356&#038;ssl=1" alt="" width="640" height="356" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_22.png?w=1295&amp;ssl=1 1295w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_22.png?resize=595%2C331&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_22.png?resize=960%2C534&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_22.png?resize=768%2C427&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_23.png?ssl=1" data-lbwps-width="1265" data-lbwps-height="712" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_23.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="10825" data-permalink="https://blog.ragasys.es/configuracion-fortigate-limitar-ancho-de-banda-con-traffic-shaping/cfladbcts_23#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_23.png?fit=1265%2C712&amp;ssl=1" data-orig-size="1265,712" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfladbcts_23" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_23.png?fit=640%2C360&amp;ssl=1" class="aligncenter size-full wp-image-10825" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_23.png?resize=640%2C360&#038;ssl=1" alt="" width="640" height="360" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_23.png?w=1265&amp;ssl=1 1265w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_23.png?resize=595%2C335&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_23.png?resize=960%2C540&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfladbcts_23.png?resize=768%2C432&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p>&nbsp;</p>
<p>Saludos y espero que os sea de ayuda <img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f609.png" alt="😉" class="wp-smiley" style="height: 1em; max-height: 1em;" /></p>
<p>La entrada <a href="https://blog.ragasys.es/configuracion-fortigate-limitar-ancho-de-banda-con-traffic-shaping">Configuración Fortigate – Limitar ancho de banda con Traffic Shaping</a> se publicó primero en <a href="https://blog.ragasys.es">RAGASYS SISTEMAS</a>.</p>
]]></content:encoded>
					
					<wfw:commentRss>https://blog.ragasys.es/configuracion-fortigate-limitar-ancho-de-banda-con-traffic-shaping/feed</wfw:commentRss>
			<slash:comments>10</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">10801</post-id>	</item>
		<item>
		<title>Configuración Fortigate – Políticas de enrutamiento</title>
		<link>https://blog.ragasys.es/configuracion-fortigate-politicas-de-enrutamiento</link>
					<comments>https://blog.ragasys.es/configuracion-fortigate-politicas-de-enrutamiento#comments</comments>
		
		<dc:creator><![CDATA[Jose Ramon Ramos Gata]]></dc:creator>
		<pubDate>Wed, 15 Apr 2020 11:26:10 +0000</pubDate>
				<category><![CDATA[Enrutamiento]]></category>
		<category><![CDATA[Firewall]]></category>
		<category><![CDATA[Fortigate]]></category>
		<category><![CDATA[Fortinet]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[Routing]]></category>
		<category><![CDATA[Routing & Switching]]></category>
		<guid isPermaLink="false">https://blog.ragasys.es/?p=10788</guid>

					<description><![CDATA[<p>Hola a tod@s. En este post vamos a ver como configurar las políticas de enrutamiento en un firewall Fortigate 50E. Antes de comenzar vamos a aclarar que sólo tenemos configurada una salida hacia Internet a través de la WAN1, dónde&#8230; <a href="https://blog.ragasys.es/configuracion-fortigate-politicas-de-enrutamiento" class="more-link">Continuar leyendo <span class="meta-nav">&#8594;</span></a></p>
<p>La entrada <a href="https://blog.ragasys.es/configuracion-fortigate-politicas-de-enrutamiento">Configuración Fortigate – Políticas de enrutamiento</a> se publicó primero en <a href="https://blog.ragasys.es">RAGASYS SISTEMAS</a>.</p>
]]></description>
										<content:encoded><![CDATA[<p>Hola a tod@s.</p>
<p>En este post vamos a ver como configurar las políticas de enrutamiento en un firewall Fortigate 50E.</p>
<ul>
<li>Antes de comenzar vamos a aclarar que sólo tenemos configurada una salida hacia Internet a través de la WAN1, dónde tenemos configurada una ruta estática como salida por defecto:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_1.png?ssl=1" data-lbwps-width="1401" data-lbwps-height="816" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2020/03/cfpde_1.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="10789" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-de-enrutamiento/cfpde_1#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_1.png?fit=1401%2C816&amp;ssl=1" data-orig-size="1401,816" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpde_1" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_1.png?fit=640%2C373&amp;ssl=1" class="aligncenter size-full wp-image-10789" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_1.png?resize=640%2C373&#038;ssl=1" alt="" width="640" height="373" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_1.png?w=1401&amp;ssl=1 1401w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_1.png?resize=595%2C347&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_1.png?resize=960%2C559&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_1.png?resize=768%2C447&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_1.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_2.png?ssl=1" data-lbwps-width="1213" data-lbwps-height="505" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2020/03/cfpde_2.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="10790" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-de-enrutamiento/cfpde_2#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_2.png?fit=1213%2C505&amp;ssl=1" data-orig-size="1213,505" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpde_2" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_2.png?fit=640%2C267&amp;ssl=1" class="aligncenter size-full wp-image-10790" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_2.png?resize=640%2C266&#038;ssl=1" alt="" width="640" height="266" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_2.png?w=1213&amp;ssl=1 1213w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_2.png?resize=595%2C248&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_2.png?resize=960%2C400&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_2.png?resize=768%2C320&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Toda mi infraestructura de red la tengo diseñada con una SuperRed 192.168.0.0/16, y a partir de esta red voy haciendo subnetting.</li>
<li>Las primeras políticas de enrutamiento que vamos a crear van a ser para evitar la salida por Internet cuando la red sea de rango privado (192.168.0.0/16, 172.16.0.0/12 y 10.0.0.0/8), es decir, que no enrute hacia internet las redes de rango privado y corte la conexión, para ello nos vamos a <strong>Red &gt; Políticas de enrutamiento</strong> <strong>&gt; Crear Nuevo</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_3.png?ssl=1" data-lbwps-width="412" data-lbwps-height="563" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2020/03/cfpde_3.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="10791" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-de-enrutamiento/cfpde_3#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_3.png?fit=412%2C563&amp;ssl=1" data-orig-size="412,563" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpde_3" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_3.png?fit=412%2C563&amp;ssl=1" class="aligncenter size-full wp-image-10791" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_3.png?resize=412%2C563&#038;ssl=1" alt="" width="412" height="563" /></a></p>
<ul>
<li>En esta política evitamos el tráfico hacia Internet desde la red 192.168.0.0/16 hacia el rango 10.0.0.0/8:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_4.png?ssl=1" data-lbwps-width="1238" data-lbwps-height="915" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2020/03/cfpde_4.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="10792" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-de-enrutamiento/cfpde_4#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_4.png?fit=1238%2C915&amp;ssl=1" data-orig-size="1238,915" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpde_4" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_4.png?fit=640%2C473&amp;ssl=1" class="aligncenter size-full wp-image-10792" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_4.png?resize=640%2C473&#038;ssl=1" alt="" width="640" height="473" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_4.png?w=1238&amp;ssl=1 1238w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_4.png?resize=595%2C440&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_4.png?resize=960%2C710&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_4.png?resize=768%2C568&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>En esta política evitamos el tráfico hacia Internet desde la red 192.168.0.0/16 hacia el rango 172.16.0.0/12:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_5.png?ssl=1" data-lbwps-width="1220" data-lbwps-height="906" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2020/03/cfpde_5.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="10793" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-de-enrutamiento/cfpde_5#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_5.png?fit=1220%2C906&amp;ssl=1" data-orig-size="1220,906" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpde_5" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_5.png?fit=640%2C475&amp;ssl=1" class="aligncenter size-full wp-image-10793" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_5.png?resize=640%2C475&#038;ssl=1" alt="" width="640" height="475" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_5.png?w=1220&amp;ssl=1 1220w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_5.png?resize=595%2C442&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_5.png?resize=960%2C713&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_5.png?resize=768%2C570&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>En esta política evitamos el tráfico hacia Internet desde la red 192.168.0.0/16 hacia el rango 192.168.0.0/16:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_6.png?ssl=1" data-lbwps-width="1227" data-lbwps-height="890" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2020/03/cfpde_6.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="10794" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-de-enrutamiento/cfpde_6#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_6.png?fit=1227%2C890&amp;ssl=1" data-orig-size="1227,890" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpde_6" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_6.png?fit=640%2C464&amp;ssl=1" class="aligncenter size-full wp-image-10794" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_6.png?resize=640%2C464&#038;ssl=1" alt="" width="640" height="464" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_6.png?w=1227&amp;ssl=1 1227w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_6.png?resize=595%2C432&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_6.png?resize=960%2C696&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_6.png?resize=768%2C557&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Con estas tres políticas evitamos que se enrute hacia Internet desde la red origen 192.168.0.0/16 hasta las tres redes de clase privada A, B y C.</li>
<li>Ahora haremos lo mismo, pero tomando como origen la red privada de clase B 172.16.0.0/12 y como destino las tres redes de clase privada A, B y C, aquí no tengo configurada ninguna interface de red, pero la pongo por si algún día configuro alguna de las interfaces del firewall en este direccionamiento:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_7.png?ssl=1" data-lbwps-width="1897" data-lbwps-height="584" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2020/03/cfpde_7-1536x473.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="10795" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-de-enrutamiento/cfpde_7#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_7.png?fit=1897%2C584&amp;ssl=1" data-orig-size="1897,584" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpde_7" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_7.png?fit=640%2C197&amp;ssl=1" class="aligncenter size-full wp-image-10795" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_7.png?resize=640%2C197&#038;ssl=1" alt="" width="640" height="197" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_7.png?w=1897&amp;ssl=1 1897w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_7.png?resize=595%2C183&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_7.png?resize=960%2C296&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_7.png?resize=768%2C236&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_7.png?resize=1536%2C473&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_7.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Y también haremos lo mismo, pero tomando como origen la red privada de clase A 10.0.0.0/8 y como destino las tres redes de clase privada A, B y C, aquí no tengo configurada ninguna interface de red, pero la pongo por si algún día configuro alguna de las interfaces del firewall en este direccionamiento:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_8.png?ssl=1" data-lbwps-width="1898" data-lbwps-height="686" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2020/03/cfpde_8-1536x555.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="10796" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-de-enrutamiento/cfpde_8#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_8.png?fit=1898%2C686&amp;ssl=1" data-orig-size="1898,686" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpde_8" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_8.png?fit=640%2C231&amp;ssl=1" class="aligncenter size-full wp-image-10796" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_8.png?resize=640%2C231&#038;ssl=1" alt="" width="640" height="231" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_8.png?w=1898&amp;ssl=1 1898w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_8.png?resize=595%2C215&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_8.png?resize=960%2C347&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_8.png?resize=768%2C278&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_8.png?resize=1536%2C555&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_8.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora vamos a generar otras políticas de enrutamiento para indicarle a cada una de las redes que tenemos configurada en nuestro firewall, cuál va a ser su salida hacia Internet, en mi caso, sólo tenemos una salida hacia Internet por la WAN1 que está conectada a un router FTTH con dirección IP 192.168.1.1, por lo tanto, todas las redes van a salir por el mismo sitio, pero si en un futuro tenemos otra salida hacia Internet por la WAN2 o incluso por la WAN1 pero a otro router distinto (por ejemplo con la IP 192.168.1.2), el tener configuradas estas políticas nos va a venir bien para que cada red salga a Internet por dónde nos interese, voy a mostrar sólo la política de enrutamiento para una de nuestras redes (DMZ) ya que para las demás será exactamente igual, para ello nos vamos a <strong>Red &gt; Políticas de enrutamiento</strong> <strong>&gt; Crear Nuevo:</strong></li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_9.png?ssl=1" data-lbwps-width="412" data-lbwps-height="563" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2020/03/cfpde_9.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="10797" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-de-enrutamiento/cfpde_9#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_9.png?fit=412%2C563&amp;ssl=1" data-orig-size="412,563" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpde_9" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_9.png?fit=412%2C563&amp;ssl=1" class="aligncenter size-full wp-image-10797" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_9.png?resize=412%2C563&#038;ssl=1" alt="" width="412" height="563" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_10.png?ssl=1" data-lbwps-width="1244" data-lbwps-height="802" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2020/03/cfpde_10.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="10798" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-de-enrutamiento/cfpde_10#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_10.png?fit=1244%2C802&amp;ssl=1" data-orig-size="1244,802" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpde_10" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_10.png?fit=640%2C413&amp;ssl=1" class="aligncenter size-full wp-image-10798" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_10.png?resize=640%2C413&#038;ssl=1" alt="" width="640" height="413" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_10.png?w=1244&amp;ssl=1 1244w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_10.png?resize=595%2C384&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_10.png?resize=960%2C619&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_10.png?resize=768%2C495&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para las demás redes hacemos lo mismo, quedando por tanto de la siguiente manera:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_11.png?ssl=1" data-lbwps-width="1897" data-lbwps-height="945" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2020/03/cfpde_11-1536x765.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="10799" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-de-enrutamiento/cfpde_11#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_11.png?fit=1897%2C945&amp;ssl=1" data-orig-size="1897,945" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpde_11" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_11.png?fit=640%2C319&amp;ssl=1" class="aligncenter size-full wp-image-10799" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_11.png?resize=640%2C319&#038;ssl=1" alt="" width="640" height="319" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_11.png?w=1897&amp;ssl=1 1897w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_11.png?resize=595%2C296&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_11.png?resize=960%2C478&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_11.png?resize=768%2C383&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_11.png?resize=1536%2C765&amp;ssl=1 1536w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2020/03/cfpde_11.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p>&nbsp;</p>
<p>Saludos y espero que os sea de ayuda <img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f609.png" alt="😉" class="wp-smiley" style="height: 1em; max-height: 1em;" /></p>
<p>La entrada <a href="https://blog.ragasys.es/configuracion-fortigate-politicas-de-enrutamiento">Configuración Fortigate – Políticas de enrutamiento</a> se publicó primero en <a href="https://blog.ragasys.es">RAGASYS SISTEMAS</a>.</p>
]]></content:encoded>
					
					<wfw:commentRss>https://blog.ragasys.es/configuracion-fortigate-politicas-de-enrutamiento/feed</wfw:commentRss>
			<slash:comments>3</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">10788</post-id>	</item>
		<item>
		<title>Configuración Fortigate – VPN SSL Acceso Remoto con Usuarios del Active Directory</title>
		<link>https://blog.ragasys.es/configuracion-fortigate-vpn-ssl-acceso-remoto-con-usuarios-del-active-directory</link>
					<comments>https://blog.ragasys.es/configuracion-fortigate-vpn-ssl-acceso-remoto-con-usuarios-del-active-directory#comments</comments>
		
		<dc:creator><![CDATA[Jose Ramon Ramos Gata]]></dc:creator>
		<pubDate>Wed, 27 Nov 2019 11:28:44 +0000</pubDate>
				<category><![CDATA[Accesos remotos]]></category>
		<category><![CDATA[Firewall]]></category>
		<category><![CDATA[Forticlient]]></category>
		<category><![CDATA[Fortigate]]></category>
		<category><![CDATA[Fortinet]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[Routing]]></category>
		<category><![CDATA[SSL]]></category>
		<category><![CDATA[VPN]]></category>
		<category><![CDATA[Routing & Switching]]></category>
		<guid isPermaLink="false">http://blog.ragasys.es/?p=9686</guid>

					<description><![CDATA[<p>Hola a tod@s. En este post vamos a ver como configurar nuestra VPN SSL de acceso remoto para que los usuarios del Active Directory se conecten a nuestras redes internas, en este link de este mismo blog podéis ver como&#8230; <a href="https://blog.ragasys.es/configuracion-fortigate-vpn-ssl-acceso-remoto-con-usuarios-del-active-directory" class="more-link">Continuar leyendo <span class="meta-nav">&#8594;</span></a></p>
<p>La entrada <a href="https://blog.ragasys.es/configuracion-fortigate-vpn-ssl-acceso-remoto-con-usuarios-del-active-directory">Configuración Fortigate – VPN SSL Acceso Remoto con Usuarios del Active Directory</a> se publicó primero en <a href="https://blog.ragasys.es">RAGASYS SISTEMAS</a>.</p>
]]></description>
										<content:encoded><![CDATA[<p>Hola a tod@s.</p>
<p>En este post vamos a ver como configurar nuestra VPN SSL de acceso remoto para que los usuarios del Active Directory se conecten a nuestras redes internas, en este <a href="https://blog.ragasys.es/configuracion-fortigate-vpn-ssl-acceso-remoto" target="_blank" rel="noopener noreferrer">link</a> de este mismo blog podéis ver como se configura una VPN SSL de acceso remoto.</p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_1.png" data-lbwps-width="739" data-lbwps-height="401" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_1.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9687" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ssl-acceso-remoto-con-usuarios-del-active-directory/cfvsarcudad_1#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_1.png?fit=739%2C401&amp;ssl=1" data-orig-size="739,401" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfvsarcudad_1" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_1.png?fit=640%2C347&amp;ssl=1" class="aligncenter size-full wp-image-9687" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_1.png?resize=640%2C347" alt="" width="640" height="347" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_1.png?w=739&amp;ssl=1 739w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_1.png?resize=595%2C323&amp;ssl=1 595w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Lo primero que vamos a realizar será crearnos el siguiente grupo en nuestro Active Directory, en este grupo vamos a ir añadiendo los usuarios que posteriormente se van a conectar a la VPN:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_2.png" data-lbwps-width="1201" data-lbwps-height="682" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_2.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9688" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ssl-acceso-remoto-con-usuarios-del-active-directory/cfvsarcudad_2#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_2.png?fit=1201%2C682&amp;ssl=1" data-orig-size="1201,682" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfvsarcudad_2" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_2.png?fit=640%2C363&amp;ssl=1" class="aligncenter size-full wp-image-9688" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_2.png?resize=640%2C363" alt="" width="640" height="363" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_2.png?w=1201&amp;ssl=1 1201w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_2.png?resize=595%2C338&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_2.png?resize=768%2C436&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_2.png?resize=960%2C545&amp;ssl=1 960w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora vamos a acceder a nuestro Fortigate, y vamos a configurar el LDAP para que se pueda conectar al árbol de directorios del Active Directory, para ello nos vamos a <strong>Usuario y Dispositivo &gt; LDAP &gt; Crear nuevo</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_3.png" data-lbwps-width="530" data-lbwps-height="557" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_3.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9689" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ssl-acceso-remoto-con-usuarios-del-active-directory/cfvsarcudad_3#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_3.png?fit=530%2C557&amp;ssl=1" data-orig-size="530,557" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfvsarcudad_3" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_3.png?fit=530%2C557&amp;ssl=1" class="aligncenter size-full wp-image-9689" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_3.png?resize=530%2C557" alt="" width="530" height="557" /></a></p>
<p>&nbsp;</p>
<ul>
<li>Realizamos las siguientes configuraciones, le indicamos un Nombre, la IP o nombre del servidor, en este caso le indicamos el nombre del dominio, puerto por el que se va a conectar al árbol de directorio LDAP, en este caso 389 que es el puerto de Active Directory para LDAP, le indicamos el Id Common name y el distinguised name, necesitamos un usuario del dominio para conectarnos al árbol LDAP, por lo que le indicamos el usuario y password, como podemos ver al probar la conexión esta todo correcto:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_20.png?ssl=1" data-lbwps-width="1248" data-lbwps-height="711" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_20.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="11481" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ssl-acceso-remoto-con-usuarios-del-active-directory/cfvsarcudad_20#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_20.png?fit=1248%2C711&amp;ssl=1" data-orig-size="1248,711" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfvsarcudad_20" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_20.png?fit=640%2C365&amp;ssl=1" class="aligncenter size-full wp-image-11481" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_20.png?resize=640%2C365&#038;ssl=1" alt="" width="640" height="365" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_20.png?w=1248&amp;ssl=1 1248w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_20.png?resize=595%2C339&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_20.png?resize=960%2C547&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_20.png?resize=768%2C438&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Este es el usuario que nos hemos creado para realizar la conexión del Fortigate al LDAP del Active Dirtectory:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_5.png" data-lbwps-width="1368" data-lbwps-height="489" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_5.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9691" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ssl-acceso-remoto-con-usuarios-del-active-directory/cfvsarcudad_5#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_5.png?fit=1368%2C489&amp;ssl=1" data-orig-size="1368,489" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfvsarcudad_5" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_5.png?fit=640%2C229&amp;ssl=1" class="aligncenter size-full wp-image-9691" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_5.png?resize=640%2C229" alt="" width="640" height="229" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_5.png?w=1368&amp;ssl=1 1368w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_5.png?resize=595%2C213&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_5.png?resize=768%2C275&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_5.png?resize=960%2C343&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_5.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora en el Fortigate vamos a crear el grupo de acceso a la VPN, para ello accedemos a las opciones de <strong>Usuario y Dispositivo &gt; Grupos de Usuario &gt; Crear nuevo</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_6.png" data-lbwps-width="1650" data-lbwps-height="450" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_6.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9692" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ssl-acceso-remoto-con-usuarios-del-active-directory/cfvsarcudad_6#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_6.png?fit=1650%2C450&amp;ssl=1" data-orig-size="1650,450" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfvsarcudad_6" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_6.png?fit=640%2C175&amp;ssl=1" class="aligncenter size-full wp-image-9692" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_6.png?resize=640%2C175" alt="" width="640" height="175" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_6.png?w=1650&amp;ssl=1 1650w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_6.png?resize=595%2C162&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_6.png?resize=768%2C209&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_6.png?resize=960%2C262&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_6.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Le indicamos un <strong>Nombre</strong> y <strong>Tipo</strong>, y agregamos un <strong>Grupo Remoto</strong> que será el grupo que hemos creado en el Active Directory:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_7.png" data-lbwps-width="1285" data-lbwps-height="523" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_7.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9693" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ssl-acceso-remoto-con-usuarios-del-active-directory/cfvsarcudad_7#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_7.png?fit=1285%2C523&amp;ssl=1" data-orig-size="1285,523" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfvsarcudad_7" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_7.png?fit=640%2C261&amp;ssl=1" class="aligncenter size-full wp-image-9693" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_7.png?resize=640%2C260" alt="" width="640" height="260" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_7.png?w=1285&amp;ssl=1 1285w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_7.png?resize=595%2C242&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_7.png?resize=768%2C313&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_7.png?resize=960%2C391&amp;ssl=1 960w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Seleccionamos el Servidor Remoto que configuramos anteriormente y añadimos el grupo del Active Directory <strong>Gvpn</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_8.png" data-lbwps-width="1915" data-lbwps-height="712" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_8.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9694" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ssl-acceso-remoto-con-usuarios-del-active-directory/cfvsarcudad_8#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_8.png?fit=1915%2C712&amp;ssl=1" data-orig-size="1915,712" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfvsarcudad_8" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_8.png?fit=640%2C238&amp;ssl=1" class="aligncenter size-full wp-image-9694" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_8.png?resize=640%2C238" alt="" width="640" height="238" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_8.png?w=1915&amp;ssl=1 1915w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_8.png?resize=595%2C221&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_8.png?resize=768%2C286&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_8.png?resize=960%2C357&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_8.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como podemos ver ya está correctamente agregado:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_9.png" data-lbwps-width="1563" data-lbwps-height="460" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_9.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9695" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ssl-acceso-remoto-con-usuarios-del-active-directory/cfvsarcudad_9#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_9.png?fit=1563%2C460&amp;ssl=1" data-orig-size="1563,460" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfvsarcudad_9" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_9.png?fit=640%2C189&amp;ssl=1" class="aligncenter size-full wp-image-9695" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_9.png?resize=640%2C188" alt="" width="640" height="188" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_9.png?w=1563&amp;ssl=1 1563w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_9.png?resize=595%2C175&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_9.png?resize=768%2C226&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_9.png?resize=960%2C283&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_9.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora, este grupo remoto que acabamos de crear tenemos que mapearlo al portal de la VPN-SSL, para ello, nos vamos a <strong>VPN &gt; Configuración de SSL-VPN &gt; Autenticación/mapeo del portal</strong> y lo agregamos como <strong>full-access</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_10.png" data-lbwps-width="1251" data-lbwps-height="947" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_10.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9696" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ssl-acceso-remoto-con-usuarios-del-active-directory/cfvsarcudad_10#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_10.png?fit=1251%2C947&amp;ssl=1" data-orig-size="1251,947" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfvsarcudad_10" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_10.png?fit=640%2C485&amp;ssl=1" class="aligncenter size-full wp-image-9696" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_10.png?resize=640%2C484" alt="" width="640" height="484" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_10.png?w=1251&amp;ssl=1 1251w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_10.png?resize=595%2C450&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_10.png?resize=768%2C581&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_10.png?resize=960%2C727&amp;ssl=1 960w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para terminar, debemos de crear y configurar las reglas o políticas, para que los usuarios se conecten a las redes internas a través de la VPN configurada en el firewall, para ello, nos vamos a <strong>Políticas y Objetos &gt; Política IPv4 &gt; Crear nuevo</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_11.png" data-lbwps-width="1821" data-lbwps-height="343" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_11.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9697" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ssl-acceso-remoto-con-usuarios-del-active-directory/cfvsarcudad_11#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_11.png?fit=1821%2C343&amp;ssl=1" data-orig-size="1821,343" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfvsarcudad_11" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_11.png?fit=640%2C121&amp;ssl=1" class="aligncenter size-full wp-image-9697" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_11.png?resize=640%2C121" alt="" width="640" height="121" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_11.png?w=1821&amp;ssl=1 1821w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_11.png?resize=595%2C112&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_11.png?resize=768%2C145&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_11.png?resize=960%2C181&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_11.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Creamos la regla o política para una de nuestras redes internas:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_12.png" data-lbwps-width="1234" data-lbwps-height="1080" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_12.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9698" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ssl-acceso-remoto-con-usuarios-del-active-directory/cfvsarcudad_12#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_12.png?fit=1234%2C1080&amp;ssl=1" data-orig-size="1234,1080" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfvsarcudad_12" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_12.png?fit=640%2C560&amp;ssl=1" class="aligncenter size-full wp-image-9698" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_12.png?resize=640%2C560" alt="" width="640" height="560" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_12.png?w=1234&amp;ssl=1 1234w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_12.png?resize=595%2C521&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_12.png?resize=768%2C672&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_12.png?resize=960%2C840&amp;ssl=1 960w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora desde un equipo remoto con el Forticlient instalado y conexión a Internet, vamos a verificar que el usuario <strong>testvpn </strong>se puede conectar a nuestra red interna:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_13.png" data-lbwps-width="883" data-lbwps-height="703" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_13.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9699" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ssl-acceso-remoto-con-usuarios-del-active-directory/cfvsarcudad_13#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_13.png?fit=883%2C703&amp;ssl=1" data-orig-size="883,703" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfvsarcudad_13" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_13.png?fit=640%2C510&amp;ssl=1" class="aligncenter size-full wp-image-9699" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_13.png?resize=640%2C510" alt="" width="640" height="510" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_13.png?w=883&amp;ssl=1 883w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_13.png?resize=595%2C474&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_13.png?resize=768%2C611&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Desde el Monitor SSL-VPN de nuestro Fortigate podemos ver los usuarios conectados a través de la VPN:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_16.png" data-lbwps-width="1793" data-lbwps-height="699" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_16.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9703" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ssl-acceso-remoto-con-usuarios-del-active-directory/cfvsarcudad_16#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_16.png?fit=1793%2C699&amp;ssl=1" data-orig-size="1793,699" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfvsarcudad_16" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_16.png?fit=640%2C249&amp;ssl=1" class="aligncenter size-full wp-image-9703" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_16.png?resize=640%2C250" alt="" width="640" height="250" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_16.png?w=1793&amp;ssl=1 1793w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_16.png?resize=595%2C232&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_16.png?resize=768%2C299&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_16.png?resize=960%2C374&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_16.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Desde la opción <strong>VPN &gt; VPN Location Map </strong>podemos ver desde que parte del mundo se están conectando los usuarios que hemos creado y configurado para nuetra VPNSSL de acceso remoto:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_15.png" data-lbwps-width="1913" data-lbwps-height="759" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_15.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9701" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ssl-acceso-remoto-con-usuarios-del-active-directory/cfvsarcudad_15#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_15.png?fit=1913%2C759&amp;ssl=1" data-orig-size="1913,759" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfvsarcudad_15" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_15.png?fit=640%2C254&amp;ssl=1" class="aligncenter size-full wp-image-9701" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_15.png?resize=640%2C254" alt="" width="640" height="254" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_15.png?w=1913&amp;ssl=1 1913w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_15.png?resize=595%2C236&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_15.png?resize=768%2C305&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_15.png?resize=960%2C381&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/11/cfvsarcudad_15.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p>Saludos y espero que os resulte de ayuda <img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f609.png" alt="😉" class="wp-smiley" style="height: 1em; max-height: 1em;" /></p>
<p>&nbsp;</p>
<p>La entrada <a href="https://blog.ragasys.es/configuracion-fortigate-vpn-ssl-acceso-remoto-con-usuarios-del-active-directory">Configuración Fortigate – VPN SSL Acceso Remoto con Usuarios del Active Directory</a> se publicó primero en <a href="https://blog.ragasys.es">RAGASYS SISTEMAS</a>.</p>
]]></content:encoded>
					
					<wfw:commentRss>https://blog.ragasys.es/configuracion-fortigate-vpn-ssl-acceso-remoto-con-usuarios-del-active-directory/feed</wfw:commentRss>
			<slash:comments>26</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">9686</post-id>	</item>
		<item>
		<title>Configuración Fortigate – VPN SSL Acceso Remoto</title>
		<link>https://blog.ragasys.es/configuracion-fortigate-vpn-ssl-acceso-remoto</link>
					<comments>https://blog.ragasys.es/configuracion-fortigate-vpn-ssl-acceso-remoto#comments</comments>
		
		<dc:creator><![CDATA[Jose Ramon Ramos Gata]]></dc:creator>
		<pubDate>Mon, 19 Aug 2019 07:18:42 +0000</pubDate>
				<category><![CDATA[Accesos remotos]]></category>
		<category><![CDATA[Firewall]]></category>
		<category><![CDATA[Forticlient]]></category>
		<category><![CDATA[Fortigate]]></category>
		<category><![CDATA[Fortinet]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[Routing]]></category>
		<category><![CDATA[SSL]]></category>
		<category><![CDATA[TIC]]></category>
		<category><![CDATA[VPN]]></category>
		<category><![CDATA[Routing & Switching]]></category>
		<guid isPermaLink="false">http://blog.ragasys.es/?p=9338</guid>

					<description><![CDATA[<p>Hola a tod@s. En este post vamos a ver como configurar una VPN SSL de acceso remoto en un firewall Fortigate, concretamente con el modelo FG 50E, con este tipo de VPN usando SSL nos podemos conectar desde cualquier equipo&#8230; <a href="https://blog.ragasys.es/configuracion-fortigate-vpn-ssl-acceso-remoto" class="more-link">Continuar leyendo <span class="meta-nav">&#8594;</span></a></p>
<p>La entrada <a href="https://blog.ragasys.es/configuracion-fortigate-vpn-ssl-acceso-remoto">Configuración Fortigate – VPN SSL Acceso Remoto</a> se publicó primero en <a href="https://blog.ragasys.es">RAGASYS SISTEMAS</a>.</p>
]]></description>
										<content:encoded><![CDATA[<p>Hola a tod@s.</p>
<p>En este post vamos a ver como configurar una VPN SSL de acceso remoto en un firewall Fortigate, concretamente con el modelo FG 50E, con este tipo de VPN usando SSL nos podemos conectar desde cualquier equipo con conexión a Internet hacia nuestra red interna, dónde todo el tráfico irá encriptado mediante SSL.</p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_1.png" data-lbwps-width="739" data-lbwps-height="401" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_1.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9339" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ssl-acceso-remoto/cfvpnsslar_1#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_1.png?fit=739%2C401&amp;ssl=1" data-orig-size="739,401" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfvpnsslar_1" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_1.png?fit=640%2C347&amp;ssl=1" class="aligncenter size-full wp-image-9339" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_1.png?resize=640%2C347" alt="" width="640" height="347" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_1.png?w=739&amp;ssl=1 739w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_1.png?resize=595%2C323&amp;ssl=1 595w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Lo primero que vamos a realizar será crearnos un objeto – dirección que incluirá todo el rango de direcciones IP que usaremos para los equipos que se conecten a través de esta VPN, para ello lo crearemos desde <strong>Políticas y Objetos &gt; Dirección &gt; Crear nuevo &gt; Dirección</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_2.png" data-lbwps-width="1014" data-lbwps-height="393" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_2.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9340" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ssl-acceso-remoto/cfvpnsslar_2#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_2.png?fit=1014%2C393&amp;ssl=1" data-orig-size="1014,393" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfvpnsslar_2" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_2.png?fit=640%2C248&amp;ssl=1" class="aligncenter size-full wp-image-9340" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_2.png?resize=640%2C248" alt="" width="640" height="248" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_2.png?w=1014&amp;ssl=1 1014w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_2.png?resize=595%2C231&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_2.png?resize=768%2C298&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_2.png?resize=960%2C372&amp;ssl=1 960w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_3.png" data-lbwps-width="1253" data-lbwps-height="710" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_3.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9341" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ssl-acceso-remoto/cfvpnsslar_3#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_3.png?fit=1253%2C710&amp;ssl=1" data-orig-size="1253,710" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfvpnsslar_3" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_3.png?fit=640%2C363&amp;ssl=1" class="aligncenter size-full wp-image-9341" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_3.png?resize=640%2C363" alt="" width="640" height="363" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_3.png?w=1253&amp;ssl=1 1253w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_3.png?resize=595%2C337&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_3.png?resize=768%2C435&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_3.png?resize=960%2C544&amp;ssl=1 960w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora nos vamos a crear los usuarios locales que accederán a través de la VPN:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_4.png" data-lbwps-width="1613" data-lbwps-height="393" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_4.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9342" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ssl-acceso-remoto/cfvpnsslar_4#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_4.png?fit=1613%2C393&amp;ssl=1" data-orig-size="1613,393" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfvpnsslar_4" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_4.png?fit=640%2C156&amp;ssl=1" class="aligncenter size-full wp-image-9342" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_4.png?resize=640%2C156" alt="" width="640" height="156" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_4.png?w=1613&amp;ssl=1 1613w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_4.png?resize=595%2C145&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_4.png?resize=768%2C187&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_4.png?resize=960%2C234&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_4.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para una correcta administración los usuarios que nos hemos creado anteriormente los vamos a anidar en un grupo:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_5.png" data-lbwps-width="1624" data-lbwps-height="429" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_5.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9343" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ssl-acceso-remoto/cfvpnsslar_5#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_5.png?fit=1624%2C429&amp;ssl=1" data-orig-size="1624,429" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfvpnsslar_5" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_5.png?fit=640%2C169&amp;ssl=1" class="aligncenter size-full wp-image-9343" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_5.png?resize=640%2C169" alt="" width="640" height="169" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_5.png?w=1624&amp;ssl=1 1624w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_5.png?resize=595%2C157&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_5.png?resize=768%2C203&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_5.png?resize=960%2C254&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_5.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Una vez creados los usuarios y grupos, vamos a configurar los portales SSL-VPN, por defecto, vienen creados estos tres, nosotros vamos a editar el portal <strong>full-access</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_6.png" data-lbwps-width="1781" data-lbwps-height="484" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_6.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9344" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ssl-acceso-remoto/cfvpnsslar_6#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_6.png?fit=1781%2C484&amp;ssl=1" data-orig-size="1781,484" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfvpnsslar_6" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_6.png?fit=640%2C174&amp;ssl=1" class="aligncenter size-full wp-image-9344" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_6.png?resize=640%2C174" alt="" width="640" height="174" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_6.png?w=1781&amp;ssl=1 1781w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_6.png?resize=595%2C162&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_6.png?resize=768%2C209&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_6.png?resize=960%2C261&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_6.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Nos quedaría configurado de la siguiente manera:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_7.png" data-lbwps-width="1230" data-lbwps-height="1066" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_7.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9345" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ssl-acceso-remoto/cfvpnsslar_7#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_7.png?fit=1230%2C1066&amp;ssl=1" data-orig-size="1230,1066" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfvpnsslar_7" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_7.png?fit=640%2C555&amp;ssl=1" class="aligncenter size-full wp-image-9345" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_7.png?resize=640%2C555" alt="" width="640" height="555" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_7.png?w=1230&amp;ssl=1 1230w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_7.png?resize=595%2C516&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_7.png?resize=768%2C666&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_7.png?resize=960%2C832&amp;ssl=1 960w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora configuramos la VPN-SSL, con los siguientes parámetros:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_8.png" data-lbwps-width="1239" data-lbwps-height="1079" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_8.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9346" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ssl-acceso-remoto/cfvpnsslar_8#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_8.png?fit=1239%2C1079&amp;ssl=1" data-orig-size="1239,1079" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfvpnsslar_8" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_8.png?fit=640%2C557&amp;ssl=1" class="aligncenter size-full wp-image-9346" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_8.png?resize=640%2C557" alt="" width="640" height="557" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_8.png?w=1239&amp;ssl=1 1239w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_8.png?resize=595%2C518&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_8.png?resize=768%2C669&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_8.png?resize=960%2C836&amp;ssl=1 960w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para terminar de configurar la VPNSSL de acceso remoto, debemos de crear las reglas o políticas para que los equipos que se conecten a través de la VPN, tengan acceso a las redes internas configuradas en nuestro firewall, voy a mostrar sólo una de ellas ya que para las demás sería exactamente igual:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_9.png" data-lbwps-width="978" data-lbwps-height="362" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_9.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9347" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ssl-acceso-remoto/cfvpnsslar_9#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_9.png?fit=978%2C362&amp;ssl=1" data-orig-size="978,362" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfvpnsslar_9" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_9.png?fit=640%2C237&amp;ssl=1" class="aligncenter size-full wp-image-9347" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_9.png?resize=640%2C237" alt="" width="640" height="237" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_9.png?w=978&amp;ssl=1 978w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_9.png?resize=595%2C220&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_9.png?resize=768%2C284&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_9.png?resize=960%2C355&amp;ssl=1 960w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_10.png" data-lbwps-width="1236" data-lbwps-height="1078" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_10.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9348" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ssl-acceso-remoto/cfvpnsslar_10#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_10.png?fit=1236%2C1078&amp;ssl=1" data-orig-size="1236,1078" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfvpnsslar_10" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_10.png?fit=640%2C558&amp;ssl=1" class="aligncenter size-full wp-image-9348" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_10.png?resize=640%2C558" alt="" width="640" height="558" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_10.png?w=1236&amp;ssl=1 1236w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_10.png?resize=595%2C519&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_10.png?resize=768%2C670&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_10.png?resize=960%2C837&amp;ssl=1 960w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como podemos ver aquí las tenemos todas creadas:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_11.png" data-lbwps-width="1914" data-lbwps-height="925" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_11.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9349" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ssl-acceso-remoto/cfvpnsslar_11#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_11.png?fit=1914%2C925&amp;ssl=1" data-orig-size="1914,925" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfvpnsslar_11" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_11.png?fit=640%2C309&amp;ssl=1" class="aligncenter size-full wp-image-9349" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_11.png?resize=640%2C309" alt="" width="640" height="309" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_11.png?w=1914&amp;ssl=1 1914w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_11.png?resize=595%2C288&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_11.png?resize=768%2C371&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_11.png?resize=960%2C464&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_11.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como nuestra conexión a Internet se encuentra a través de un router FTTH haciendo las funciones de NAT, debemos mapear el puerto que hemos utilizado para la VPNSSL (10443) hacia nuestro Fortigate:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_12.png" data-lbwps-width="1397" data-lbwps-height="341" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_12.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9350" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ssl-acceso-remoto/cfvpnsslar_12#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_12.png?fit=1397%2C341&amp;ssl=1" data-orig-size="1397,341" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfvpnsslar_12" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_12.png?fit=640%2C156&amp;ssl=1" class="aligncenter size-full wp-image-9350" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_12.png?resize=640%2C156" alt="" width="640" height="156" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_12.png?w=1397&amp;ssl=1 1397w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_12.png?resize=595%2C145&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_12.png?resize=768%2C187&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_12.png?resize=960%2C234&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_12.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Con esto ya tendríamos configurada y operativa nuestra VPNSSL de acceso remoto, ahora desde cualquier equipo con conexión a internet, le instalaremos el Forticlient y configuraremos los parámetros de la VPNSSL para conectarnos desde cualquier lugar del mundo a las redes internas de nuestra infraestructura, dónde todo el tráfico irá encriptado mediante SSL:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_13.png" data-lbwps-width="882" data-lbwps-height="703" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_13.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9351" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ssl-acceso-remoto/cfvpnsslar_13#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_13.png?fit=882%2C703&amp;ssl=1" data-orig-size="882,703" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfvpnsslar_13" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_13.png?fit=640%2C510&amp;ssl=1" class="aligncenter size-full wp-image-9351" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_13.png?resize=640%2C510" alt="" width="640" height="510" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_13.png?w=882&amp;ssl=1 882w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_13.png?resize=595%2C474&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_13.png?resize=768%2C612&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como podemos ver ya estamos conectados y nos está sirviendo una dirección IP del rango que habíamos configurado:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_14.png" data-lbwps-width="881" data-lbwps-height="704" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_14.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9352" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ssl-acceso-remoto/cfvpnsslar_14#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_14.png?fit=881%2C704&amp;ssl=1" data-orig-size="881,704" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfvpnsslar_14" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_14.png?fit=640%2C511&amp;ssl=1" class="aligncenter size-full wp-image-9352" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_14.png?resize=640%2C511" alt="" width="640" height="511" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_14.png?w=881&amp;ssl=1 881w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_14.png?resize=595%2C475&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_14.png?resize=768%2C614&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Desde el Monitor SSL-VPN de nuestro Fortigate podemos ver los usuarios conectados a través de la VPN:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_15.png" data-lbwps-width="1710" data-lbwps-height="679" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_15.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9353" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ssl-acceso-remoto/cfvpnsslar_15#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_15.png?fit=1710%2C679&amp;ssl=1" data-orig-size="1710,679" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfvpnsslar_15" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_15.png?fit=640%2C254&amp;ssl=1" class="aligncenter size-full wp-image-9353" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_15.png?resize=640%2C254" alt="" width="640" height="254" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_15.png?w=1710&amp;ssl=1 1710w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_15.png?resize=595%2C236&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_15.png?resize=768%2C305&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_15.png?resize=960%2C381&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_15.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Desde la opción <strong>VPN &gt; VPN Location Map</strong> podemos ver desde que parte del mundo se están conectando los usuarios que hemos creado y configurado para nuetra VPNSSL de acceso remoto:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_16.png" data-lbwps-width="1913" data-lbwps-height="939" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_16.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9354" data-permalink="https://blog.ragasys.es/configuracion-fortigate-vpn-ssl-acceso-remoto/cfvpnsslar_16#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_16.png?fit=1913%2C939&amp;ssl=1" data-orig-size="1913,939" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfvpnsslar_16" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_16.png?fit=640%2C314&amp;ssl=1" class="aligncenter size-full wp-image-9354" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_16.png?resize=640%2C314" alt="" width="640" height="314" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_16.png?w=1913&amp;ssl=1 1913w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_16.png?resize=595%2C292&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_16.png?resize=768%2C377&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_16.png?resize=960%2C471&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfvpnsslar_16.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p>&nbsp;</p>
<p>Saludos y espero que os resulte de ayuda <img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f609.png" alt="😉" class="wp-smiley" style="height: 1em; max-height: 1em;" /></p>
<p>La entrada <a href="https://blog.ragasys.es/configuracion-fortigate-vpn-ssl-acceso-remoto">Configuración Fortigate – VPN SSL Acceso Remoto</a> se publicó primero en <a href="https://blog.ragasys.es">RAGASYS SISTEMAS</a>.</p>
]]></content:encoded>
					
					<wfw:commentRss>https://blog.ragasys.es/configuracion-fortigate-vpn-ssl-acceso-remoto/feed</wfw:commentRss>
			<slash:comments>50</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">9338</post-id>	</item>
		<item>
		<title>Configuración Fortigate – Políticas y Objetos</title>
		<link>https://blog.ragasys.es/configuracion-fortigate-politicas-y-objetos</link>
					<comments>https://blog.ragasys.es/configuracion-fortigate-politicas-y-objetos#comments</comments>
		
		<dc:creator><![CDATA[Jose Ramon Ramos Gata]]></dc:creator>
		<pubDate>Wed, 14 Aug 2019 08:08:30 +0000</pubDate>
				<category><![CDATA[Firewall]]></category>
		<category><![CDATA[Fortigate]]></category>
		<category><![CDATA[Fortinet]]></category>
		<category><![CDATA[Routing]]></category>
		<category><![CDATA[Switching]]></category>
		<category><![CDATA[TIC]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[Routing & Switching]]></category>
		<guid isPermaLink="false">http://blog.ragasys.es/?p=9290</guid>

					<description><![CDATA[<p>Hola a tod@s. En este post vamos a ver como configurar las opciones de Políticas y Objetos en un firewall Fortigate, concretamente con el modelo FG 50E. Una vez que hemos iniciado sesión en nuestro Fortigate 50E, nos vamos a&#8230; <a href="https://blog.ragasys.es/configuracion-fortigate-politicas-y-objetos" class="more-link">Continuar leyendo <span class="meta-nav">&#8594;</span></a></p>
<p>La entrada <a href="https://blog.ragasys.es/configuracion-fortigate-politicas-y-objetos">Configuración Fortigate – Políticas y Objetos</a> se publicó primero en <a href="https://blog.ragasys.es">RAGASYS SISTEMAS</a>.</p>
]]></description>
										<content:encoded><![CDATA[<p>Hola a tod@s.</p>
<p>En este post vamos a ver como configurar las opciones de <strong>Políticas y Objetos</strong> en un firewall Fortigate, concretamente con el modelo FG 50E.</p>
<ul>
<li>Una vez que hemos iniciado sesión en nuestro Fortigate 50E, nos vamos a la opción de <strong>Políticas y Objetos</strong> y lo primero que haremos será configurarnos los objetos de <strong>Dirección</strong> que más tarde los usaremos en nuestras políticas, podemos creárnoslos de dos tipos, Dirección y Grupo de Dirección, según nos interese:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_1.png" data-lbwps-width="1023" data-lbwps-height="414" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_1.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9291" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-y-objetos/cfpyo_1#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_1.png?fit=1023%2C414&amp;ssl=1" data-orig-size="1023,414" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpyo_1" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_1.png?fit=640%2C259&amp;ssl=1" class="aligncenter size-full wp-image-9291" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_1.png?resize=640%2C259" alt="" width="640" height="259" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_1.png?w=1023&amp;ssl=1 1023w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_1.png?resize=595%2C241&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_1.png?resize=768%2C311&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_1.png?resize=960%2C389&amp;ssl=1 960w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para empezar a configurar nuestra infraestructura, nos vamos a crear dos objetos de <strong>Dirección </strong>por cada red implementada en nuestro firewall, un objeto va a definir al propio firewall que será el Gateway de la red a la que pertenece y el otro objeto va a definir la red completa.</li>
<li>Empezaremos por la DMZ, objeto – dirección para definir a la red completa, <strong>DMZ-NET</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_2.png" data-lbwps-width="883" data-lbwps-height="360" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_2.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9292" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-y-objetos/cfpyo_2#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_2.png?fit=883%2C360&amp;ssl=1" data-orig-size="883,360" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpyo_2" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_2.png?fit=640%2C261&amp;ssl=1" class="aligncenter size-full wp-image-9292" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_2.png?resize=640%2C261" alt="" width="640" height="261" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_2.png?w=883&amp;ssl=1 883w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_2.png?resize=595%2C243&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_2.png?resize=768%2C313&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>DMZ, objeto – dirección para definir al Gateway <strong>DMZ-210_dmz-gw</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_3.png" data-lbwps-width="1186" data-lbwps-height="362" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_3.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9293" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-y-objetos/cfpyo_3#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_3.png?fit=1186%2C362&amp;ssl=1" data-orig-size="1186,362" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpyo_3" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_3.png?fit=640%2C195&amp;ssl=1" class="aligncenter size-full wp-image-9293" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_3.png?resize=640%2C195" alt="" width="640" height="195" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_3.png?w=1186&amp;ssl=1 1186w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_3.png?resize=595%2C182&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_3.png?resize=768%2C234&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_3.png?resize=960%2C293&amp;ssl=1 960w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>GESTION, objeto – dirección para definir a la red completa, <strong>GESTION-NET</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_4.png" data-lbwps-width="965" data-lbwps-height="371" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_4.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9294" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-y-objetos/cfpyo_4#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_4.png?fit=965%2C371&amp;ssl=1" data-orig-size="965,371" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpyo_4" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_4.png?fit=640%2C246&amp;ssl=1" class="aligncenter size-full wp-image-9294" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_4.png?resize=640%2C246" alt="" width="640" height="246" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_4.png?w=965&amp;ssl=1 965w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_4.png?resize=595%2C229&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_4.png?resize=768%2C295&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_4.png?resize=960%2C369&amp;ssl=1 960w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>GESTION, objeto – dirección para definir al Gateway <strong>GESTION-210_gestion-gw</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_5.png" data-lbwps-width="890" data-lbwps-height="349" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_5.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9295" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-y-objetos/cfpyo_5#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_5.png?fit=890%2C349&amp;ssl=1" data-orig-size="890,349" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpyo_5" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_5.png?fit=640%2C251&amp;ssl=1" class="aligncenter size-full wp-image-9295" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_5.png?resize=640%2C251" alt="" width="640" height="251" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_5.png?w=890&amp;ssl=1 890w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_5.png?resize=595%2C233&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_5.png?resize=768%2C301&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>HYPERVLAB, objeto – dirección para definir a la red completa, <strong>HYPERVLAB-NET</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_6.png" data-lbwps-width="915" data-lbwps-height="346" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_6.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9296" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-y-objetos/cfpyo_6#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_6.png?fit=915%2C346&amp;ssl=1" data-orig-size="915,346" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpyo_6" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_6.png?fit=640%2C242&amp;ssl=1" class="aligncenter size-full wp-image-9296" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_6.png?resize=640%2C242" alt="" width="640" height="242" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_6.png?w=915&amp;ssl=1 915w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_6.png?resize=595%2C225&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_6.png?resize=768%2C290&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>HYPERVLAB, objeto – dirección para definir al Gateway <strong>HYPERVLAB-210_hypervlab-gw</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_7.png" data-lbwps-width="1026" data-lbwps-height="341" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_7.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9297" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-y-objetos/cfpyo_7#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_7.png?fit=1026%2C341&amp;ssl=1" data-orig-size="1026,341" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpyo_7" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_7.png?fit=640%2C213&amp;ssl=1" class="aligncenter size-full wp-image-9297" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_7.png?resize=640%2C213" alt="" width="640" height="213" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_7.png?w=1026&amp;ssl=1 1026w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_7.png?resize=595%2C198&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_7.png?resize=768%2C255&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_7.png?resize=960%2C319&amp;ssl=1 960w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>LANRGS, objeto – dirección para definir a la red completa, <strong>LANRGS-NET</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_8.png" data-lbwps-width="883" data-lbwps-height="338" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_8.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9298" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-y-objetos/cfpyo_8#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_8.png?fit=883%2C338&amp;ssl=1" data-orig-size="883,338" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpyo_8" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_8.png?fit=640%2C245&amp;ssl=1" class="aligncenter size-full wp-image-9298" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_8.png?resize=640%2C245" alt="" width="640" height="245" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_8.png?w=883&amp;ssl=1 883w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_8.png?resize=595%2C228&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_8.png?resize=768%2C294&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>LANRGS, objeto – dirección para definir al Gateway <strong>LANRGS-210_lanrgs-gw</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_9.png" data-lbwps-width="937" data-lbwps-height="346" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_9.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9299" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-y-objetos/cfpyo_9#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_9.png?fit=937%2C346&amp;ssl=1" data-orig-size="937,346" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpyo_9" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_9.png?fit=640%2C236&amp;ssl=1" class="aligncenter size-full wp-image-9299" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_9.png?resize=640%2C236" alt="" width="640" height="236" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_9.png?w=937&amp;ssl=1 937w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_9.png?resize=595%2C220&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_9.png?resize=768%2C284&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>LANRGS, objeto – dirección para definir a uno de los equipos de la red LANRGS <strong>LANRGS-14_xenon</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_10.png" data-lbwps-width="960" data-lbwps-height="343" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_10.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9300" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-y-objetos/cfpyo_10#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_10.png?fit=960%2C343&amp;ssl=1" data-orig-size="960,343" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpyo_10" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_10.png?fit=640%2C229&amp;ssl=1" class="aligncenter size-full wp-image-9300" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_10.png?resize=640%2C229" alt="" width="640" height="229" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_10.png?w=960&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_10.png?resize=595%2C213&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_10.png?resize=768%2C274&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>LANRGS, objeto – dirección para definir a uno de los equipos de la red LANRGS <strong>LANRGS-15_krypton</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_11.png" data-lbwps-width="878" data-lbwps-height="342" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_11.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9301" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-y-objetos/cfpyo_11#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_11.png?fit=878%2C342&amp;ssl=1" data-orig-size="878,342" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpyo_11" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_11.png?fit=640%2C249&amp;ssl=1" class="aligncenter size-full wp-image-9301" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_11.png?resize=640%2C249" alt="" width="640" height="249" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_11.png?w=878&amp;ssl=1 878w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_11.png?resize=595%2C232&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_11.png?resize=768%2C299&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>VMWARELAB, objeto – dirección para definir a la red completa, <strong>VMWARELAB-NET</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_12.png" data-lbwps-width="914" data-lbwps-height="343" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_12.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9302" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-y-objetos/cfpyo_12#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_12.png?fit=914%2C343&amp;ssl=1" data-orig-size="914,343" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpyo_12" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_12.png?fit=640%2C240&amp;ssl=1" class="aligncenter size-full wp-image-9302" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_12.png?resize=640%2C240" alt="" width="640" height="240" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_12.png?w=914&amp;ssl=1 914w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_12.png?resize=595%2C223&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_12.png?resize=768%2C288&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>VMWARELAB, objeto – dirección para definir al Gateway <strong>VMWARELAB-210_vmwarelab-gw</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_13.png" data-lbwps-width="878" data-lbwps-height="340" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_13.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9303" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-y-objetos/cfpyo_13#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_13.png?fit=878%2C340&amp;ssl=1" data-orig-size="878,340" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpyo_13" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_13.png?fit=640%2C248&amp;ssl=1" class="aligncenter size-full wp-image-9303" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_13.png?resize=640%2C248" alt="" width="640" height="248" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_13.png?w=878&amp;ssl=1 878w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_13.png?resize=595%2C230&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_13.png?resize=768%2C297&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>ISCSIA, objeto – dirección para definir a la red completa, <strong>ISCSIA-NET</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_14.png" data-lbwps-width="919" data-lbwps-height="338" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_14.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9304" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-y-objetos/cfpyo_14#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_14.png?fit=919%2C338&amp;ssl=1" data-orig-size="919,338" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpyo_14" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_14.png?fit=640%2C235&amp;ssl=1" class="aligncenter size-full wp-image-9304" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_14.png?resize=640%2C235" alt="" width="640" height="235" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_14.png?w=919&amp;ssl=1 919w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_14.png?resize=595%2C219&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_14.png?resize=768%2C282&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>ISCSIA, objeto – dirección para definir al Gateway <strong>ISCSIA-72.1_iscsia-gw</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_15.png" data-lbwps-width="873" data-lbwps-height="338" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_15.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9305" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-y-objetos/cfpyo_15#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_15.png?fit=873%2C338&amp;ssl=1" data-orig-size="873,338" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpyo_15" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_15.png?fit=640%2C248&amp;ssl=1" class="aligncenter size-full wp-image-9305" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_15.png?resize=640%2C248" alt="" width="640" height="248" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_15.png?w=873&amp;ssl=1 873w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_15.png?resize=595%2C230&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_15.png?resize=768%2C297&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>ISCSIB, objeto – dirección para definir a la red completa, <strong>ISCSIB-NET</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_16.png" data-lbwps-width="828" data-lbwps-height="343" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_16.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9306" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-y-objetos/cfpyo_16#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_16.png?fit=828%2C343&amp;ssl=1" data-orig-size="828,343" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpyo_16" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_16.png?fit=640%2C265&amp;ssl=1" class="aligncenter size-full wp-image-9306" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_16.png?resize=640%2C265" alt="" width="640" height="265" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_16.png?w=828&amp;ssl=1 828w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_16.png?resize=595%2C246&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_16.png?resize=768%2C318&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>ISCSIB, objeto – dirección para definir al Gateway <strong>ISCSIB-73.1_iscsib-gw</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_17.png" data-lbwps-width="854" data-lbwps-height="341" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_17.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9307" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-y-objetos/cfpyo_17#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_17.png?fit=854%2C341&amp;ssl=1" data-orig-size="854,341" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpyo_17" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_17.png?fit=640%2C256&amp;ssl=1" class="aligncenter size-full wp-image-9307" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_17.png?resize=640%2C256" alt="" width="640" height="256" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_17.png?w=854&amp;ssl=1 854w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_17.png?resize=595%2C238&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_17.png?resize=768%2C307&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>WAN1, objeto – dirección para definir a la red completa, <strong>WAN1-NET</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_18.png" data-lbwps-width="830" data-lbwps-height="343" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_18.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9308" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-y-objetos/cfpyo_18#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_18.png?fit=830%2C343&amp;ssl=1" data-orig-size="830,343" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpyo_18" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_18.png?fit=640%2C264&amp;ssl=1" class="aligncenter size-full wp-image-9308" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_18.png?resize=640%2C264" alt="" width="640" height="264" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_18.png?w=830&amp;ssl=1 830w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_18.png?resize=595%2C246&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_18.png?resize=768%2C317&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>WAN1, objeto – dirección para definir al Gateway <strong>WAN1-210_wan1-gw</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_19.png" data-lbwps-width="839" data-lbwps-height="341" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_19.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9309" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-y-objetos/cfpyo_19#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_19.png?fit=839%2C341&amp;ssl=1" data-orig-size="839,341" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpyo_19" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_19.png?fit=640%2C260&amp;ssl=1" class="aligncenter size-full wp-image-9309" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_19.png?resize=640%2C260" alt="" width="640" height="260" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_19.png?w=839&amp;ssl=1 839w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_19.png?resize=595%2C242&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_19.png?resize=768%2C312&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora nos vamos a crear un Grupo de dirección, dónde vamos a incluir dos equipos de la red LANRGS:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_20.png" data-lbwps-width="1266" data-lbwps-height="539" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_20.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9310" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-y-objetos/cfpyo_20#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_20.png?fit=1266%2C539&amp;ssl=1" data-orig-size="1266,539" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpyo_20" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_20.png?fit=640%2C273&amp;ssl=1" class="aligncenter size-full wp-image-9310" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_20.png?resize=640%2C272" alt="" width="640" height="272" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_20.png?w=1266&amp;ssl=1 1266w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_20.png?resize=595%2C253&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_20.png?resize=768%2C327&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_20.png?resize=960%2C409&amp;ssl=1 960w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Nos creamos otro Grupo de dirección, dónde vamos a incluir los Controladores de dominio, en este caso, sólo tenemos uno, pero ya lo dejamos creado por si en un futuro vamos añadiendo más:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_21.png" data-lbwps-width="1267" data-lbwps-height="535" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_21.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9311" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-y-objetos/cfpyo_21#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_21.png?fit=1267%2C535&amp;ssl=1" data-orig-size="1267,535" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpyo_21" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_21.png?fit=640%2C270&amp;ssl=1" class="aligncenter size-full wp-image-9311" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_21.png?resize=640%2C270" alt="" width="640" height="270" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_21.png?w=1267&amp;ssl=1 1267w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_21.png?resize=595%2C251&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_21.png?resize=768%2C324&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_21.png?resize=960%2C405&amp;ssl=1 960w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Con estos objetos de Dirección nos podemos ir creando todos los que nos vayan interesando, para después usarlos en nuestras políticas.</li>
<li>Los que nos hemos creado quedarían de la siguiente manera, los he ordenado por colores según la red a la que pertenecen:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_22.png" data-lbwps-width="1817" data-lbwps-height="1038" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_22.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9312" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-y-objetos/cfpyo_22#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_22.png?fit=1817%2C1038&amp;ssl=1" data-orig-size="1817,1038" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpyo_22" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_22.png?fit=640%2C365&amp;ssl=1" class="aligncenter size-full wp-image-9312" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_22.png?resize=640%2C366" alt="" width="640" height="366" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_22.png?w=1817&amp;ssl=1 1817w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_22.png?resize=595%2C340&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_22.png?resize=768%2C439&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_22.png?resize=960%2C548&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_22.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_23.png" data-lbwps-width="1913" data-lbwps-height="727" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_23.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9313" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-y-objetos/cfpyo_23#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_23.png?fit=1913%2C727&amp;ssl=1" data-orig-size="1913,727" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpyo_23" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_23.png?fit=640%2C243&amp;ssl=1" class="aligncenter size-full wp-image-9313" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_23.png?resize=640%2C243" alt="" width="640" height="243" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_23.png?w=1913&amp;ssl=1 1913w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_23.png?resize=595%2C226&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_23.png?resize=768%2C292&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_23.png?resize=960%2C365&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_23.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora vamos a ver la parte de <strong>Políticas y Objetos &gt; Servicios</strong>, dónde vienen predefinidos la mayoría de los servicios que utilizaremos en nuestras políticas, en estos servicios se define el protocolo y puerto que utiliza el servicio que queremos configurar, los he ordenado por colores según la Categoría:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_24.png" data-lbwps-width="1837" data-lbwps-height="914" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_24.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9314" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-y-objetos/cfpyo_24#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_24.png?fit=1837%2C914&amp;ssl=1" data-orig-size="1837,914" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpyo_24" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_24.png?fit=640%2C319&amp;ssl=1" class="aligncenter size-full wp-image-9314" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_24.png?resize=640%2C318" alt="" width="640" height="318" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_24.png?w=1837&amp;ssl=1 1837w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_24.png?resize=595%2C296&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_24.png?resize=768%2C382&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_24.png?resize=960%2C478&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_24.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_25.png" data-lbwps-width="1813" data-lbwps-height="649" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_25.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9315" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-y-objetos/cfpyo_25#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_25.png?fit=1813%2C649&amp;ssl=1" data-orig-size="1813,649" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpyo_25" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_25.png?fit=640%2C229&amp;ssl=1" class="aligncenter size-full wp-image-9315" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_25.png?resize=640%2C229" alt="" width="640" height="229" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_25.png?w=1813&amp;ssl=1 1813w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_25.png?resize=595%2C213&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_25.png?resize=768%2C275&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_25.png?resize=960%2C344&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_25.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_26.png" data-lbwps-width="1722" data-lbwps-height="717" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_26.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9316" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-y-objetos/cfpyo_26#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_26.png?fit=1722%2C717&amp;ssl=1" data-orig-size="1722,717" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpyo_26" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_26.png?fit=640%2C267&amp;ssl=1" class="aligncenter size-full wp-image-9316" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_26.png?resize=640%2C266" alt="" width="640" height="266" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_26.png?w=1722&amp;ssl=1 1722w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_26.png?resize=595%2C248&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_26.png?resize=768%2C320&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_26.png?resize=960%2C400&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_26.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_27.png" data-lbwps-width="1805" data-lbwps-height="896" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_27.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9317" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-y-objetos/cfpyo_27#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_27.png?fit=1805%2C896&amp;ssl=1" data-orig-size="1805,896" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpyo_27" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_27.png?fit=640%2C318&amp;ssl=1" class="aligncenter size-full wp-image-9317" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_27.png?resize=640%2C318" alt="" width="640" height="318" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_27.png?w=1805&amp;ssl=1 1805w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_27.png?resize=595%2C295&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_27.png?resize=768%2C381&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_27.png?resize=960%2C477&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_27.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_28.png" data-lbwps-width="1728" data-lbwps-height="895" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_28.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9318" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-y-objetos/cfpyo_28#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_28.png?fit=1728%2C895&amp;ssl=1" data-orig-size="1728,895" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpyo_28" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_28.png?fit=640%2C331&amp;ssl=1" class="aligncenter size-full wp-image-9318" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_28.png?resize=640%2C331" alt="" width="640" height="331" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_28.png?w=1728&amp;ssl=1 1728w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_28.png?resize=595%2C308&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_28.png?resize=768%2C398&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_28.png?resize=960%2C497&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_28.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para crearnos un nuevo Servicio o un Grupo de servicios simplemente clicamos sobre Crear nuevo y elegimos la opción que nos interese:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_29.png" data-lbwps-width="874" data-lbwps-height="514" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_29.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9319" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-y-objetos/cfpyo_29#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_29.png?fit=874%2C514&amp;ssl=1" data-orig-size="874,514" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpyo_29" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_29.png?fit=640%2C376&amp;ssl=1" class="aligncenter size-full wp-image-9319" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_29.png?resize=640%2C376" alt="" width="640" height="376" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_29.png?w=874&amp;ssl=1 874w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_29.png?resize=595%2C350&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_29.png?resize=768%2C452&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Por ejemplo, para el servicio de WSUS que utilizará nuestro servidor central de actualizaciones de Windows no crearemos este Servicio:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_30.png" data-lbwps-width="1236" data-lbwps-height="500" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_30.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9320" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-y-objetos/cfpyo_30#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_30.png?fit=1236%2C500&amp;ssl=1" data-orig-size="1236,500" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpyo_30" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_30.png?fit=640%2C259&amp;ssl=1" class="aligncenter size-full wp-image-9320" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_30.png?resize=640%2C259" alt="" width="640" height="259" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_30.png?w=1236&amp;ssl=1 1236w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_30.png?resize=595%2C241&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_30.png?resize=768%2C311&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_30.png?resize=960%2C388&amp;ssl=1 960w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Y otro ejemplo para mostrar sería el utilizado para los controladores de dominio, dónde nos crearemos un Grupo de servicios con los siguientes miembros:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_31.png" data-lbwps-width="1224" data-lbwps-height="562" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_31.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9321" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-y-objetos/cfpyo_31#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_31.png?fit=1224%2C562&amp;ssl=1" data-orig-size="1224,562" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpyo_31" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_31.png?fit=640%2C294&amp;ssl=1" class="aligncenter size-full wp-image-9321" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_31.png?resize=640%2C294" alt="" width="640" height="294" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_31.png?w=1224&amp;ssl=1 1224w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_31.png?resize=595%2C273&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_31.png?resize=768%2C353&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_31.png?resize=960%2C441&amp;ssl=1 960w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Bueno, una vez que tenemos definidos los objetos Dirección, Grupo de dirección, Servicios y Grupos de servicios, podemos empezar a definir las políticas o reglas de nuestro firewall, por defecto, viene definida una regla implícita dónde se niega todo el tráfico, nosotros empezaremos a configurar reglas por encima de ésta aceptando o denegando todo lo que nos vaya interesando y según lo requiera nuestra infraestructura de red:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_32.png" data-lbwps-width="1761" data-lbwps-height="891" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_32.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9322" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-y-objetos/cfpyo_32#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_32.png?fit=1761%2C891&amp;ssl=1" data-orig-size="1761,891" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpyo_32" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_32.png?fit=640%2C324&amp;ssl=1" class="aligncenter size-full wp-image-9322" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_32.png?resize=640%2C324" alt="" width="640" height="324" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_32.png?w=1761&amp;ssl=1 1761w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_32.png?resize=595%2C301&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_32.png?resize=768%2C389&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_32.png?resize=960%2C486&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_32.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para empezar vamos a crear las reglas para dar conexión a Internet a todas nuestras redes, sólo voy a mostrar una, para la red LANRGS, ya que para todas las demás será exactamente igual:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_33.png" data-lbwps-width="1239" data-lbwps-height="1041" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_33.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9323" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-y-objetos/cfpyo_33#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_33.png?fit=1239%2C1041&amp;ssl=1" data-orig-size="1239,1041" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpyo_33" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_33.png?fit=640%2C538&amp;ssl=1" class="aligncenter size-full wp-image-9323" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_33.png?resize=640%2C538" alt="" width="640" height="538" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_33.png?w=1239&amp;ssl=1 1239w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_33.png?resize=595%2C500&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_33.png?resize=768%2C645&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_33.png?resize=960%2C807&amp;ssl=1 960w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como podemos ver está política la hemos creado para las demás redes:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_34.png" data-lbwps-width="1915" data-lbwps-height="385" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_34.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9324" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-y-objetos/cfpyo_34#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_34.png?fit=1915%2C385&amp;ssl=1" data-orig-size="1915,385" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpyo_34" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_34.png?fit=640%2C129&amp;ssl=1" class="aligncenter size-full wp-image-9324" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_34.png?resize=640%2C129" alt="" width="640" height="129" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_34.png?w=1915&amp;ssl=1 1915w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_34.png?resize=595%2C120&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_34.png?resize=768%2C154&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_34.png?resize=960%2C193&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_34.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora vamos a ver otra política para el acceso de los equipos del dpto. de TI a las distintas redes del firewall, sólo voy a mostrar una, para la red GESTION, ya que para todas las demás será exactamente igual:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_35.png" data-lbwps-width="1242" data-lbwps-height="1022" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_35.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9325" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-y-objetos/cfpyo_35#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_35.png?fit=1242%2C1022&amp;ssl=1" data-orig-size="1242,1022" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpyo_35" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_35.png?fit=640%2C527&amp;ssl=1" class="aligncenter size-full wp-image-9325" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_35.png?resize=640%2C527" alt="" width="640" height="527" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_35.png?w=1242&amp;ssl=1 1242w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_35.png?resize=595%2C490&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_35.png?resize=768%2C632&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_35.png?resize=960%2C790&amp;ssl=1 960w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como podemos ver está política la hemos creado para las demás redes:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_36.png" data-lbwps-width="1915" data-lbwps-height="558" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_36.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9326" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-y-objetos/cfpyo_36#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_36.png?fit=1915%2C558&amp;ssl=1" data-orig-size="1915,558" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpyo_36" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_36.png?fit=640%2C187&amp;ssl=1" class="aligncenter size-full wp-image-9326" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_36.png?resize=640%2C186" alt="" width="640" height="186" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_36.png?w=1915&amp;ssl=1 1915w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_36.png?resize=595%2C173&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_36.png?resize=768%2C224&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_36.png?resize=960%2C280&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_36.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora vamos a ver una política para que todos los equipos de la red de GESTION se puedan comunicar con nuestros controladores de dominio:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_37.png" data-lbwps-width="1239" data-lbwps-height="986" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_37.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9327" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-y-objetos/cfpyo_37#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_37.png?fit=1239%2C986&amp;ssl=1" data-orig-size="1239,986" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpyo_37" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_37.png?fit=640%2C509&amp;ssl=1" class="aligncenter size-full wp-image-9327" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_37.png?resize=640%2C509" alt="" width="640" height="509" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_37.png?w=1239&amp;ssl=1 1239w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_37.png?resize=595%2C474&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_37.png?resize=768%2C611&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_37.png?resize=960%2C764&amp;ssl=1 960w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Así nos quedaría:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_38.png" data-lbwps-width="1913" data-lbwps-height="574" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_38.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9328" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-y-objetos/cfpyo_38#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_38.png?fit=1913%2C574&amp;ssl=1" data-orig-size="1913,574" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpyo_38" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_38.png?fit=640%2C192&amp;ssl=1" class="aligncenter size-full wp-image-9328" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_38.png?resize=640%2C192" alt="" width="640" height="192" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_38.png?w=1913&amp;ssl=1 1913w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_38.png?resize=595%2C179&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_38.png?resize=768%2C230&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_38.png?resize=960%2C288&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_38.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Por último vamos a habilitar la <strong>Política DoS</strong>, para detectar y bloquear ataques de Denegación de Servicios (DoS), para ello, lo haremos desde Sistema &gt; Visibilidad de Característica &gt; Política DoS:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_39.png" data-lbwps-width="1299" data-lbwps-height="747" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_39.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9429" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-y-objetos/cfpyo_39#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_39.png?fit=1299%2C747&amp;ssl=1" data-orig-size="1299,747" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpyo_39" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_39.png?fit=640%2C368&amp;ssl=1" class="aligncenter size-full wp-image-9429" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_39.png?resize=640%2C368" alt="" width="640" height="368" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_39.png?w=1299&amp;ssl=1 1299w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_39.png?resize=595%2C342&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_39.png?resize=768%2C442&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_39.png?resize=960%2C552&amp;ssl=1 960w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Una vez habilitada la política DoS, nos vamos a <strong>Políticas y Objetos &gt; Política DoS IPv4 &gt; Crear nuevo</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_40.png" data-lbwps-width="1808" data-lbwps-height="391" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_40.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9430" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-y-objetos/cfpyo_40#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_40.png?fit=1808%2C391&amp;ssl=1" data-orig-size="1808,391" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpyo_40" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_40.png?fit=640%2C139&amp;ssl=1" class="aligncenter size-full wp-image-9430" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_40.png?resize=640%2C138" alt="" width="640" height="138" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_40.png?w=1808&amp;ssl=1 1808w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_40.png?resize=595%2C129&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_40.png?resize=768%2C166&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_40.png?resize=960%2C208&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_40.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Configuramos los umbrales para detectar y bloquear ataques de DoS en la interface que tiene la salida a Internet (WAN1), para todas las direcciones de origen y destino y para cualquier servicio:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_41.png" data-lbwps-width="1073" data-lbwps-height="875" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_41.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9431" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-y-objetos/cfpyo_41#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_41.png?fit=1073%2C875&amp;ssl=1" data-orig-size="1073,875" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpyo_41" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_41.png?fit=640%2C522&amp;ssl=1" class="aligncenter size-full wp-image-9431" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_41.png?resize=640%2C522" alt="" width="640" height="522" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_41.png?w=1073&amp;ssl=1 1073w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_41.png?resize=595%2C485&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_41.png?resize=768%2C626&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_41.png?resize=960%2C783&amp;ssl=1 960w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_42.png" data-lbwps-width="1233" data-lbwps-height="637" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_42.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9432" data-permalink="https://blog.ragasys.es/configuracion-fortigate-politicas-y-objetos/cfpyo_42#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_42.png?fit=1233%2C637&amp;ssl=1" data-orig-size="1233,637" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfpyo_42" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_42.png?fit=640%2C331&amp;ssl=1" class="aligncenter size-full wp-image-9432" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_42.png?resize=640%2C331" alt="" width="640" height="331" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_42.png?w=1233&amp;ssl=1 1233w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_42.png?resize=595%2C307&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_42.png?resize=768%2C397&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfpyo_42.png?resize=960%2C496&amp;ssl=1 960w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p>&nbsp;</p>
<p>Saludos y espero que os sea de ayuda <img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f609.png" alt="😉" class="wp-smiley" style="height: 1em; max-height: 1em;" /></p>
<p>La entrada <a href="https://blog.ragasys.es/configuracion-fortigate-politicas-y-objetos">Configuración Fortigate – Políticas y Objetos</a> se publicó primero en <a href="https://blog.ragasys.es">RAGASYS SISTEMAS</a>.</p>
]]></content:encoded>
					
					<wfw:commentRss>https://blog.ragasys.es/configuracion-fortigate-politicas-y-objetos/feed</wfw:commentRss>
			<slash:comments>8</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">9290</post-id>	</item>
		<item>
		<title>Configuración Fortigate &#8211; Red</title>
		<link>https://blog.ragasys.es/configuracion-fortigate-red</link>
					<comments>https://blog.ragasys.es/configuracion-fortigate-red#comments</comments>
		
		<dc:creator><![CDATA[Jose Ramon Ramos Gata]]></dc:creator>
		<pubDate>Mon, 12 Aug 2019 09:35:26 +0000</pubDate>
				<category><![CDATA[Firewall]]></category>
		<category><![CDATA[Fortigate]]></category>
		<category><![CDATA[Fortinet]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[Routing]]></category>
		<category><![CDATA[Switching]]></category>
		<category><![CDATA[TIC]]></category>
		<category><![CDATA[Routing & Switching]]></category>
		<guid isPermaLink="false">http://blog.ragasys.es/?p=9270</guid>

					<description><![CDATA[<p>Hola a tod@s. En este post vamos a ver como configurar las opciones de red en un firewall Fortigate, concretamente con el modelo FG 50E. Una vez que hemos iniciado sesión en nuestro Fortigate 50E, nos vamos a la opción&#8230; <a href="https://blog.ragasys.es/configuracion-fortigate-red" class="more-link">Continuar leyendo <span class="meta-nav">&#8594;</span></a></p>
<p>La entrada <a href="https://blog.ragasys.es/configuracion-fortigate-red">Configuración Fortigate &#8211; Red</a> se publicó primero en <a href="https://blog.ragasys.es">RAGASYS SISTEMAS</a>.</p>
]]></description>
										<content:encoded><![CDATA[<p>Hola a tod@s.</p>
<p>En este post vamos a ver como configurar las opciones de red en un firewall Fortigate, concretamente con el modelo FG 50E.</p>
<ul>
<li>Una vez que hemos iniciado sesión en nuestro Fortigate 50E, nos vamos a la opción de <strong>Red</strong> y lo primero que haremos será crear nueva interfaz:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred1.png" data-lbwps-width="1811" data-lbwps-height="655" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfgred1.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9271" data-permalink="https://blog.ragasys.es/configuracion-fortigate-red/cfgred1#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred1.png?fit=1811%2C655&amp;ssl=1" data-orig-size="1811,655" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfgred1" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred1.png?fit=640%2C231&amp;ssl=1" class="aligncenter size-full wp-image-9271" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred1.png?resize=640%2C231" alt="" width="640" height="231" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred1.png?w=1811&amp;ssl=1 1811w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred1.png?resize=595%2C215&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred1.png?resize=768%2C278&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred1.png?resize=960%2C347&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred1.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>En esta primera interfaz, le damos un nombre y vamos a crear una interfaz del tipo Link Agreggation Group que utiliza el protocolo 802.3ad, dónde vamos a incluir las interfaces lan1 y lan2, con este tipo de interfaz vamos a conseguir el doble de ancho de banda en el enlace, anidadas dentro de esta interfaz vamos a configurar las VLAN de nuestro sistema y más adelante veremos como se configuraran los Trunk en los puertos del switch dónde van conectadas estas dos interfaces del firewall:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred2.png" data-lbwps-width="1237" data-lbwps-height="1080" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfgred2.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9272" data-permalink="https://blog.ragasys.es/configuracion-fortigate-red/cfgred2#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred2.png?fit=1237%2C1080&amp;ssl=1" data-orig-size="1237,1080" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfgred2" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred2.png?fit=640%2C559&amp;ssl=1" class="aligncenter size-full wp-image-9272" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred2.png?resize=640%2C559" alt="" width="640" height="559" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred2.png?w=1237&amp;ssl=1 1237w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred2.png?resize=595%2C519&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred2.png?resize=768%2C671&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred2.png?resize=960%2C838&amp;ssl=1 960w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como podemos ver en el dibujo del firewall, estamos utilizando las interfaces lan1 y lan2:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred3.png" data-lbwps-width="1810" data-lbwps-height="658" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfgred3.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9273" data-permalink="https://blog.ragasys.es/configuracion-fortigate-red/cfgred3#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred3.png?fit=1810%2C658&amp;ssl=1" data-orig-size="1810,658" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfgred3" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred3.png?fit=640%2C233&amp;ssl=1" class="aligncenter size-full wp-image-9273" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred3.png?resize=640%2C233" alt="" width="640" height="233" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred3.png?w=1810&amp;ssl=1 1810w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred3.png?resize=595%2C216&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred3.png?resize=768%2C279&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred3.png?resize=960%2C349&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred3.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora nos vamos a crear las VLANs que irán asociadas a esta interfaz LAG:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred4.png" data-lbwps-width="1811" data-lbwps-height="655" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfgred4.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9274" data-permalink="https://blog.ragasys.es/configuracion-fortigate-red/cfgred4#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred4.png?fit=1811%2C655&amp;ssl=1" data-orig-size="1811,655" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfgred4" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred4.png?fit=640%2C231&amp;ssl=1" class="aligncenter size-full wp-image-9274" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred4.png?resize=640%2C231" alt="" width="640" height="231" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred4.png?w=1811&amp;ssl=1 1811w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred4.png?resize=595%2C215&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred4.png?resize=768%2C278&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred4.png?resize=960%2C347&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred4.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>La primera VLAN será la de GESTION, dónde le indicamos el nombre, tipo VLAN, la interfaz a la que pertenece en este caso la que hemos creado anteriormente LAG, el ID de VLAN 99, la dirección IP y el acceso administrativo:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred5.png" data-lbwps-width="1225" data-lbwps-height="1078" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfgred5.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9275" data-permalink="https://blog.ragasys.es/configuracion-fortigate-red/cfgred5#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred5.png?fit=1225%2C1078&amp;ssl=1" data-orig-size="1225,1078" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfgred5" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred5.png?fit=640%2C563&amp;ssl=1" class="aligncenter size-full wp-image-9275" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred5.png?resize=640%2C563" alt="" width="640" height="563" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred5.png?w=1225&amp;ssl=1 1225w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred5.png?resize=595%2C524&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred5.png?resize=768%2C676&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred5.png?resize=960%2C845&amp;ssl=1 960w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Para las demás VLAN realizamos las mismas configuraciones.</li>
<li>VLAN DMZ:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred6.png" data-lbwps-width="1301" data-lbwps-height="994" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfgred6.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9276" data-permalink="https://blog.ragasys.es/configuracion-fortigate-red/cfgred6#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred6.png?fit=1301%2C994&amp;ssl=1" data-orig-size="1301,994" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfgred6" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred6.png?fit=640%2C489&amp;ssl=1" class="aligncenter size-full wp-image-9276" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred6.png?resize=640%2C489" alt="" width="640" height="489" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred6.png?w=1301&amp;ssl=1 1301w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred6.png?resize=595%2C455&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred6.png?resize=768%2C587&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred6.png?resize=960%2C733&amp;ssl=1 960w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>VLAN HYPERVLAB:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred7.png" data-lbwps-width="1230" data-lbwps-height="1079" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfgred7.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9277" data-permalink="https://blog.ragasys.es/configuracion-fortigate-red/cfgred7#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred7.png?fit=1230%2C1079&amp;ssl=1" data-orig-size="1230,1079" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfgred7" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred7.png?fit=640%2C561&amp;ssl=1" class="aligncenter size-full wp-image-9277" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred7.png?resize=640%2C561" alt="" width="640" height="561" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred7.png?w=1230&amp;ssl=1 1230w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred7.png?resize=595%2C522&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred7.png?resize=768%2C674&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred7.png?resize=960%2C842&amp;ssl=1 960w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>VLAN LANRGS:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred8.png" data-lbwps-width="1249" data-lbwps-height="1080" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfgred8.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9278" data-permalink="https://blog.ragasys.es/configuracion-fortigate-red/cfgred8#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred8.png?fit=1249%2C1080&amp;ssl=1" data-orig-size="1249,1080" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfgred8" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred8.png?fit=640%2C553&amp;ssl=1" class="aligncenter size-full wp-image-9278" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred8.png?resize=640%2C553" alt="" width="640" height="553" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred8.png?w=1249&amp;ssl=1 1249w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred8.png?resize=595%2C514&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred8.png?resize=768%2C664&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred8.png?resize=960%2C830&amp;ssl=1 960w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>VLAN VMWARELAB:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred9.png" data-lbwps-width="1236" data-lbwps-height="1080" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfgred9.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9279" data-permalink="https://blog.ragasys.es/configuracion-fortigate-red/cfgred9#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred9.png?fit=1236%2C1080&amp;ssl=1" data-orig-size="1236,1080" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfgred9" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred9.png?fit=640%2C559&amp;ssl=1" class="aligncenter size-full wp-image-9279" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred9.png?resize=640%2C559" alt="" width="640" height="559" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred9.png?w=1236&amp;ssl=1 1236w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred9.png?resize=595%2C520&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred9.png?resize=768%2C671&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred9.png?resize=960%2C839&amp;ssl=1 960w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Así quedarían configuradas las interfaces de red del grupo LAG 802.3ad:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred10.png" data-lbwps-width="1829" data-lbwps-height="427" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfgred10.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9280" data-permalink="https://blog.ragasys.es/configuracion-fortigate-red/cfgred10#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred10.png?fit=1829%2C427&amp;ssl=1" data-orig-size="1829,427" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfgred10" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred10.png?fit=640%2C149&amp;ssl=1" class="aligncenter size-full wp-image-9280" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred10.png?resize=640%2C149" alt="" width="640" height="149" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred10.png?w=1829&amp;ssl=1 1829w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred10.png?resize=595%2C139&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred10.png?resize=768%2C179&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred10.png?resize=960%2C224&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred10.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora en la interfaz lan4 vamos a crear dos VLANs para más adelante configurar el almacenamiento iSCSI en nuestra cabina de almacenamiento QNAP:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred11.png" data-lbwps-width="1242" data-lbwps-height="1079" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfgred11.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9281" data-permalink="https://blog.ragasys.es/configuracion-fortigate-red/cfgred11#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred11.png?fit=1242%2C1079&amp;ssl=1" data-orig-size="1242,1079" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfgred11" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred11.png?fit=640%2C556&amp;ssl=1" class="aligncenter size-full wp-image-9281" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred11.png?resize=640%2C556" alt="" width="640" height="556" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred11.png?w=1242&amp;ssl=1 1242w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred11.png?resize=595%2C517&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred11.png?resize=768%2C667&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred11.png?resize=960%2C834&amp;ssl=1 960w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred12.png" data-lbwps-width="1230" data-lbwps-height="1078" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfgred12.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9282" data-permalink="https://blog.ragasys.es/configuracion-fortigate-red/cfgred12#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred12.png?fit=1230%2C1078&amp;ssl=1" data-orig-size="1230,1078" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfgred12" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred12.png?fit=640%2C561&amp;ssl=1" class="aligncenter size-full wp-image-9282" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred12.png?resize=640%2C561" alt="" width="640" height="561" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred12.png?w=1230&amp;ssl=1 1230w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred12.png?resize=595%2C521&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred12.png?resize=768%2C673&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred12.png?resize=960%2C841&amp;ssl=1 960w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Así quedaría configurada la interfaz lan4, con dos VLAN para iSCSI:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred13.png" data-lbwps-width="1803" data-lbwps-height="674" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfgred13.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9283" data-permalink="https://blog.ragasys.es/configuracion-fortigate-red/cfgred13#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred13.png?fit=1803%2C674&amp;ssl=1" data-orig-size="1803,674" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfgred13" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred13.png?fit=640%2C239&amp;ssl=1" class="aligncenter size-full wp-image-9283" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred13.png?resize=640%2C239" alt="" width="640" height="239" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred13.png?w=1803&amp;ssl=1 1803w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred13.png?resize=595%2C222&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred13.png?resize=768%2C287&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred13.png?resize=960%2C359&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred13.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Y ahora vamos a configurar la interfaz wan1 para la salida a Internet, esta interfaz va conectada a un router FTTH de Movistar:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred14.png" data-lbwps-width="1247" data-lbwps-height="941" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfgred14.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9284" data-permalink="https://blog.ragasys.es/configuracion-fortigate-red/cfgred14#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred14.png?fit=1247%2C941&amp;ssl=1" data-orig-size="1247,941" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfgred14" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred14.png?fit=640%2C483&amp;ssl=1" class="aligncenter size-full wp-image-9284" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred14.png?resize=640%2C483" alt="" width="640" height="483" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred14.png?w=1247&amp;ssl=1 1247w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred14.png?resize=595%2C449&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred14.png?resize=768%2C580&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred14.png?resize=960%2C724&amp;ssl=1 960w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Así quedaría configurada la interfaz wan1 para la salida a internet:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred15.png" data-lbwps-width="1809" data-lbwps-height="662" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfgred15.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9285" data-permalink="https://blog.ragasys.es/configuracion-fortigate-red/cfgred15#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred15.png?fit=1809%2C662&amp;ssl=1" data-orig-size="1809,662" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfgred15" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred15.png?fit=640%2C234&amp;ssl=1" class="aligncenter size-full wp-image-9285" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred15.png?resize=640%2C234" alt="" width="640" height="234" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred15.png?w=1809&amp;ssl=1 1809w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred15.png?resize=595%2C218&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred15.png?resize=768%2C281&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred15.png?resize=960%2C351&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred15.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Ahora configuramos los DNS de nuestra infraestructura, que será un controlador de dominio Windows (192.168.14.1) y uno de los DNS de Google:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred16.png" data-lbwps-width="1242" data-lbwps-height="734" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfgred16.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9286" data-permalink="https://blog.ragasys.es/configuracion-fortigate-red/cfgred16#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred16.png?fit=1242%2C734&amp;ssl=1" data-orig-size="1242,734" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfgred16" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred16.png?fit=640%2C378&amp;ssl=1" class="aligncenter size-full wp-image-9286" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred16.png?resize=640%2C378" alt="" width="640" height="378" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred16.png?w=1242&amp;ssl=1 1242w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred16.png?resize=595%2C352&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred16.png?resize=768%2C454&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred16.png?resize=960%2C567&amp;ssl=1 960w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Por último vamos a configurar la ruta estática por defecto para la salida a internet de nuestro Fortigate:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred17.png" data-lbwps-width="495" data-lbwps-height="436" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfgred17.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9287" data-permalink="https://blog.ragasys.es/configuracion-fortigate-red/cfgred17#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred17.png?fit=495%2C436&amp;ssl=1" data-orig-size="495,436" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfgred17" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred17.png?fit=495%2C436&amp;ssl=1" class="aligncenter size-full wp-image-9287" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred17.png?resize=495%2C436" alt="" width="495" height="436" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred18.png" data-lbwps-width="1301" data-lbwps-height="545" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cfgred18.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9288" data-permalink="https://blog.ragasys.es/configuracion-fortigate-red/cfgred18#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred18.png?fit=1301%2C545&amp;ssl=1" data-orig-size="1301,545" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cfgred18" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred18.png?fit=640%2C268&amp;ssl=1" class="aligncenter size-full wp-image-9288" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred18.png?resize=640%2C268" alt="" width="640" height="268" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred18.png?w=1301&amp;ssl=1 1301w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred18.png?resize=595%2C249&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred18.png?resize=768%2C322&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cfgred18.png?resize=960%2C402&amp;ssl=1 960w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>En otros post veremos algunas configuraciones más avanzadas de Políticas de enrutamiento y configuraremos el protocolo de enrutamiento OSPF entre nuestro Fortigate 50E y un Mikrotik 1100 AHx2 para que se intercambien las rutas de forma dinámica.</li>
</ul>
<p>Saludos y espero que os resulte de ayuda <img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f609.png" alt="😉" class="wp-smiley" style="height: 1em; max-height: 1em;" /></p>
<p>La entrada <a href="https://blog.ragasys.es/configuracion-fortigate-red">Configuración Fortigate &#8211; Red</a> se publicó primero en <a href="https://blog.ragasys.es">RAGASYS SISTEMAS</a>.</p>
]]></content:encoded>
					
					<wfw:commentRss>https://blog.ragasys.es/configuracion-fortigate-red/feed</wfw:commentRss>
			<slash:comments>3</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">9270</post-id>	</item>
		<item>
		<title>Configuración Fortigate &#8211; Sistema</title>
		<link>https://blog.ragasys.es/configuracion-fortigate-sistema</link>
					<comments>https://blog.ragasys.es/configuracion-fortigate-sistema#comments</comments>
		
		<dc:creator><![CDATA[Jose Ramon Ramos Gata]]></dc:creator>
		<pubDate>Wed, 07 Aug 2019 08:48:25 +0000</pubDate>
				<category><![CDATA[Firewall]]></category>
		<category><![CDATA[Fortigate]]></category>
		<category><![CDATA[Fortinet]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[Routing]]></category>
		<category><![CDATA[Switching]]></category>
		<category><![CDATA[TIC]]></category>
		<category><![CDATA[Routing & Switching]]></category>
		<guid isPermaLink="false">http://blog.ragasys.es/?p=9244</guid>

					<description><![CDATA[<p>Hola a tod@s. En este post vamos a ver como configurar las opciones de sistema en un firewall Fortigate, concretamente con el modelo FG 50E. Una vez que hemos iniciado sesión en nuestro Fortigate 50E, nos vamos a la opción&#8230; <a href="https://blog.ragasys.es/configuracion-fortigate-sistema" class="more-link">Continuar leyendo <span class="meta-nav">&#8594;</span></a></p>
<p>La entrada <a href="https://blog.ragasys.es/configuracion-fortigate-sistema">Configuración Fortigate &#8211; Sistema</a> se publicó primero en <a href="https://blog.ragasys.es">RAGASYS SISTEMAS</a>.</p>
]]></description>
										<content:encoded><![CDATA[<p>Hola a tod@s.</p>
<p>En este post vamos a ver como configurar las opciones de sistema en un firewall Fortigate, concretamente con el modelo FG 50E.</p>
<ul>
<li>Una vez que hemos iniciado sesión en nuestro Fortigate 50E, nos vamos a la opción de <strong>Sistema</strong> y lo primero que haremos será configurarnos los <strong>perfiles de acceso</strong>, en estos perfiles se definen los distintos tipos de permisos que tendrán los usuarios para configurar las opciones del firewall, por defecto vienen creados dos tipos de perfiles, <strong>prof_admin</strong> y <strong>super_admin</strong>, nosotros nos crearemos el perfil <strong>Administradores Ragasys</strong> con los siguientes permisos:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_1.png" data-lbwps-width="1708" data-lbwps-height="507" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_1.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9245" data-permalink="https://blog.ragasys.es/configuracion-fortigate-sistema/cf_sys_1#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_1.png?fit=1708%2C507&amp;ssl=1" data-orig-size="1708,507" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cf_sys_1" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_1.png?fit=640%2C190&amp;ssl=1" class="aligncenter size-full wp-image-9245" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_1.png?resize=640%2C190" alt="" width="640" height="190" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_1.png?w=1708&amp;ssl=1 1708w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_1.png?resize=595%2C177&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_1.png?resize=768%2C228&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_1.png?resize=960%2C285&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_1.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_2.png" data-lbwps-width="1569" data-lbwps-height="305" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_2.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9246" data-permalink="https://blog.ragasys.es/configuracion-fortigate-sistema/cf_sys_2#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_2.png?fit=1569%2C305&amp;ssl=1" data-orig-size="1569,305" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cf_sys_2" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_2.png?fit=640%2C125&amp;ssl=1" class="aligncenter size-full wp-image-9246" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_2.png?resize=640%2C124" alt="" width="640" height="124" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_2.png?w=1569&amp;ssl=1 1569w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_2.png?resize=595%2C116&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_2.png?resize=768%2C149&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_2.png?resize=960%2C187&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_2.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_3.png" data-lbwps-width="1313" data-lbwps-height="849" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_3.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9247" data-permalink="https://blog.ragasys.es/configuracion-fortigate-sistema/cf_sys_3#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_3.png?fit=1313%2C849&amp;ssl=1" data-orig-size="1313,849" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cf_sys_3" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_3.png?fit=640%2C414&amp;ssl=1" class="aligncenter size-full wp-image-9247" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_3.png?resize=640%2C414" alt="" width="640" height="414" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_3.png?w=1313&amp;ssl=1 1313w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_3.png?resize=595%2C385&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_3.png?resize=768%2C497&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_3.png?resize=960%2C621&amp;ssl=1 960w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Nos podemos crear distintos perfiles según los niveles de acceso.</li>
<li>Ahora nos vamos a crear los usuarios locales que tendrán acceso al firewall y a los cuáles les asignaremos el perfil que nos interese, para ello accedemos a <strong>Sistema &gt; Administradores &gt; Crear nuevo &gt; Administrador</strong>:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_4.png" data-lbwps-width="1736" data-lbwps-height="361" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_4.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9248" data-permalink="https://blog.ragasys.es/configuracion-fortigate-sistema/cf_sys_4#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_4.png?fit=1736%2C361&amp;ssl=1" data-orig-size="1736,361" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cf_sys_4" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_4.png?fit=640%2C133&amp;ssl=1" class="aligncenter size-full wp-image-9248" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_4.png?resize=640%2C133" alt="" width="640" height="133" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_4.png?w=1736&amp;ssl=1 1736w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_4.png?resize=595%2C124&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_4.png?resize=768%2C160&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_4.png?resize=960%2C200&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_4.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_5.png" data-lbwps-width="1250" data-lbwps-height="715" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_5.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9249" data-permalink="https://blog.ragasys.es/configuracion-fortigate-sistema/cf_sys_5#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_5.png?fit=1250%2C715&amp;ssl=1" data-orig-size="1250,715" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cf_sys_5" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_5.png?fit=640%2C366&amp;ssl=1" class="aligncenter size-full wp-image-9249" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_5.png?resize=640%2C366" alt="" width="640" height="366" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_5.png?w=1250&amp;ssl=1 1250w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_5.png?resize=595%2C340&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_5.png?resize=768%2C439&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_5.png?resize=960%2C549&amp;ssl=1 960w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Como podemos ver ya lo tenemos creado:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_6.png" data-lbwps-width="1642" data-lbwps-height="361" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_6.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9250" data-permalink="https://blog.ragasys.es/configuracion-fortigate-sistema/cf_sys_6#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_6.png?fit=1642%2C361&amp;ssl=1" data-orig-size="1642,361" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cf_sys_6" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_6.png?fit=640%2C141&amp;ssl=1" class="aligncenter size-full wp-image-9250" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_6.png?resize=640%2C141" alt="" width="640" height="141" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_6.png?w=1642&amp;ssl=1 1642w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_6.png?resize=595%2C131&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_6.png?resize=768%2C169&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_6.png?resize=960%2C211&amp;ssl=1 960w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_6.png?w=1280&amp;ssl=1 1280w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>En la opción de <strong>Sistema &gt; Firmware</strong>, le podemos cargar las actualizaciones de firmware que nos hayamos descargado de la web de soporte de Fortinet y tener así actualizado nuestro dispositivo:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_7.png" data-lbwps-width="862" data-lbwps-height="456" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_7.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9251" data-permalink="https://blog.ragasys.es/configuracion-fortigate-sistema/cf_sys_7#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_7.png?fit=862%2C456&amp;ssl=1" data-orig-size="862,456" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cf_sys_7" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_7.png?fit=640%2C339&amp;ssl=1" class="aligncenter size-full wp-image-9251" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_7.png?resize=640%2C339" alt="" width="640" height="339" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_7.png?w=862&amp;ssl=1 862w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_7.png?resize=595%2C315&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_7.png?resize=768%2C406&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>El fichero tipo firmware tiene este aspecto:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_8.png" data-lbwps-width="1000" data-lbwps-height="278" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_8.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9252" data-permalink="https://blog.ragasys.es/configuracion-fortigate-sistema/cf_sys_8#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_8.png?fit=1000%2C278&amp;ssl=1" data-orig-size="1000,278" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cf_sys_8" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_8.png?fit=640%2C178&amp;ssl=1" class="aligncenter size-full wp-image-9252" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_8.png?resize=640%2C178" alt="" width="640" height="178" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_8.png?w=1000&amp;ssl=1 1000w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_8.png?resize=595%2C165&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_8.png?resize=768%2C214&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_8.png?resize=960%2C267&amp;ssl=1 960w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>En la opción de <strong>Sistema &gt; Configuración</strong> podemos configurar, un nombre para el host, fecha y hora, los puertos que vamos a utilizar para la administración del firewall, las políticas de contraseñas, el idioma, los temas, etc:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_9.png" data-lbwps-width="1244" data-lbwps-height="1049" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_9.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9253" data-permalink="https://blog.ragasys.es/configuracion-fortigate-sistema/cf_sys_9#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_9.png?fit=1244%2C1049&amp;ssl=1" data-orig-size="1244,1049" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cf_sys_9" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_9.png?fit=640%2C540&amp;ssl=1" class="aligncenter size-full wp-image-9253" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_9.png?resize=640%2C540" alt="" width="640" height="540" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_9.png?w=1244&amp;ssl=1 1244w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_9.png?resize=595%2C502&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_9.png?resize=768%2C648&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_9.png?resize=960%2C810&amp;ssl=1 960w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_10.png" data-lbwps-width="981" data-lbwps-height="244" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_10.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9254" data-permalink="https://blog.ragasys.es/configuracion-fortigate-sistema/cf_sys_10#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_10.png?fit=981%2C244&amp;ssl=1" data-orig-size="981,244" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cf_sys_10" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_10.png?fit=640%2C159&amp;ssl=1" class="aligncenter size-full wp-image-9254" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_10.png?resize=640%2C159" alt="" width="640" height="159" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_10.png?w=981&amp;ssl=1 981w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_10.png?resize=595%2C148&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_10.png?resize=768%2C191&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_10.png?resize=960%2C239&amp;ssl=1 960w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>La opción <strong>Sistema &gt; HA</strong> es para montar un cluster de alta disponibilidad entre dos dispositivos Fortigate, para darle así mayor disponibilidad a nuestra infraestructura de red en caso de caída de uno de los firewall, en mi caso, como no dispongo de otro dispositivo, lo monto en modo Autónomo (a ver si los de Fortinet se enrollan y me mandan un nuevo dispositivo para poder probar todas estas opciones, no estaría nada mal):</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_11.png" data-lbwps-width="1253" data-lbwps-height="718" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_11.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9255" data-permalink="https://blog.ragasys.es/configuracion-fortigate-sistema/cf_sys_11#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_11.png?fit=1253%2C718&amp;ssl=1" data-orig-size="1253,718" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cf_sys_11" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_11.png?fit=640%2C367&amp;ssl=1" class="aligncenter size-full wp-image-9255" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_11.png?resize=640%2C367" alt="" width="640" height="367" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_11.png?w=1253&amp;ssl=1 1253w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_11.png?resize=595%2C341&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_11.png?resize=768%2C440&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_11.png?resize=960%2C550&amp;ssl=1 960w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>En la opción <strong>Sistema &gt; Avanzado </strong>podemos configurar el servicio de correo electrónico, para enviar los avisos de nuestro Fortigate a una cuenta de correo electrónico de soporte:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_12.png" data-lbwps-width="1213" data-lbwps-height="582" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_12.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9256" data-permalink="https://blog.ragasys.es/configuracion-fortigate-sistema/cf_sys_12#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_12.png?fit=1213%2C582&amp;ssl=1" data-orig-size="1213,582" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cf_sys_12" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_12.png?fit=640%2C307&amp;ssl=1" class="aligncenter size-full wp-image-9256" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_12.png?resize=640%2C307" alt="" width="640" height="307" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_12.png?w=1213&amp;ssl=1 1213w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_12.png?resize=595%2C285&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_12.png?resize=768%2C368&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_12.png?resize=960%2C461&amp;ssl=1 960w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>En la opción <strong>Sistema &gt; Visibilidad de Característica </strong>podemos habilitar los roles y características de nuestro Fortigate:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_13.png" data-lbwps-width="1288" data-lbwps-height="732" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_13.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9257" data-permalink="https://blog.ragasys.es/configuracion-fortigate-sistema/cf_sys_13#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_13.png?fit=1288%2C732&amp;ssl=1" data-orig-size="1288,732" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cf_sys_13" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_13.png?fit=640%2C364&amp;ssl=1" class="aligncenter size-full wp-image-9257" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_13.png?resize=640%2C364" alt="" width="640" height="364" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_13.png?w=1288&amp;ssl=1 1288w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_13.png?resize=595%2C338&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_13.png?resize=768%2C436&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_13.png?resize=960%2C546&amp;ssl=1 960w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_14.png" data-lbwps-width="1288" data-lbwps-height="763" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_14.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="9258" data-permalink="https://blog.ragasys.es/configuracion-fortigate-sistema/cf_sys_14#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_14.png?fit=1288%2C763&amp;ssl=1" data-orig-size="1288,763" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cf_sys_14" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_14.png?fit=640%2C379&amp;ssl=1" class="aligncenter size-full wp-image-9258" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_14.png?resize=640%2C379" alt="" width="640" height="379" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_14.png?w=1288&amp;ssl=1 1288w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_14.png?resize=595%2C352&amp;ssl=1 595w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_14.png?resize=768%2C455&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2019/08/cf_sys_14.png?resize=960%2C569&amp;ssl=1 960w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p>&nbsp;</p>
<p>Saludos y espero que os resulte de ayuda <img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f609.png" alt="😉" class="wp-smiley" style="height: 1em; max-height: 1em;" /></p>
<p>La entrada <a href="https://blog.ragasys.es/configuracion-fortigate-sistema">Configuración Fortigate &#8211; Sistema</a> se publicó primero en <a href="https://blog.ragasys.es">RAGASYS SISTEMAS</a>.</p>
]]></content:encoded>
					
					<wfw:commentRss>https://blog.ragasys.es/configuracion-fortigate-sistema/feed</wfw:commentRss>
			<slash:comments>2</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">9244</post-id>	</item>
		<item>
		<title>Enrutamiento en Routers Cisco – Enrutamiento estático II</title>
		<link>https://blog.ragasys.es/enrutamiento-en-routers-cisco-enrutamiento-estatico-ii</link>
					<comments>https://blog.ragasys.es/enrutamiento-en-routers-cisco-enrutamiento-estatico-ii#comments</comments>
		
		<dc:creator><![CDATA[Jose Ramon Ramos Gata]]></dc:creator>
		<pubDate>Tue, 08 Nov 2016 12:14:28 +0000</pubDate>
				<category><![CDATA[Cisco]]></category>
		<category><![CDATA[Enrutamiento]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[Routing]]></category>
		<category><![CDATA[Switching]]></category>
		<category><![CDATA[IOS Cisco]]></category>
		<category><![CDATA[Packet Tracer]]></category>
		<category><![CDATA[Protocolos de enrutamiento]]></category>
		<category><![CDATA[Routing & Switching]]></category>
		<guid isPermaLink="false">http://blog.ragasys.es/?p=4478</guid>

					<description><![CDATA[<p>Hola a tod@s. En este segundo bloque sobre enrutamiento seguiremos con el enrutamiento estático, para ello aquí os dejo los siguientes diseños. Actividad 1: Enrutamiento estático II Topología actividad 1: Actividad 2: Enrutamiento estático III Topología actividad 2: Actividad 3:&#8230; <a href="https://blog.ragasys.es/enrutamiento-en-routers-cisco-enrutamiento-estatico-ii" class="more-link">Continuar leyendo <span class="meta-nav">&#8594;</span></a></p>
<p>La entrada <a href="https://blog.ragasys.es/enrutamiento-en-routers-cisco-enrutamiento-estatico-ii">Enrutamiento en Routers Cisco – Enrutamiento estático II</a> se publicó primero en <a href="https://blog.ragasys.es">RAGASYS SISTEMAS</a>.</p>
]]></description>
										<content:encoded><![CDATA[<p>Hola a tod@s.</p>
<p>En este segundo bloque sobre enrutamiento seguiremos con el enrutamiento estático, para ello aquí os dejo los siguientes diseños.</p>
<ul>
<li>Actividad 1: Enrutamiento estático II</li>
<li>Topología actividad 1:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/11/erceeii1.png" data-lbwps-width="1055" data-lbwps-height="591" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2016/11/erceeii1.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="4479" data-permalink="https://blog.ragasys.es/enrutamiento-en-routers-cisco-enrutamiento-estatico-ii/erceeii1#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/11/erceeii1.png?fit=1055%2C591&amp;ssl=1" data-orig-size="1055,591" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="erceeii1" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/11/erceeii1.png?fit=640%2C359&amp;ssl=1" class="aligncenter size-full wp-image-4479" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/11/erceeii1.png?resize=640%2C359" alt="erceeii1" width="640" height="359" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/11/erceeii1.png?w=1055&amp;ssl=1 1055w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/11/erceeii1.png?resize=300%2C168&amp;ssl=1 300w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/11/erceeii1.png?resize=768%2C430&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/11/erceeii1.png?resize=1024%2C574&amp;ssl=1 1024w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Actividad 2: Enrutamiento estático III</li>
<li>Topología actividad 2:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/11/erceeii2.png" data-lbwps-width="1030" data-lbwps-height="496" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2016/11/erceeii2.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="4480" data-permalink="https://blog.ragasys.es/enrutamiento-en-routers-cisco-enrutamiento-estatico-ii/erceeii2#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/11/erceeii2.png?fit=1030%2C496&amp;ssl=1" data-orig-size="1030,496" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="erceeii2" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/11/erceeii2.png?fit=640%2C308&amp;ssl=1" class="aligncenter size-full wp-image-4480" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/11/erceeii2.png?resize=640%2C308" alt="erceeii2" width="640" height="308" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/11/erceeii2.png?w=1030&amp;ssl=1 1030w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/11/erceeii2.png?resize=300%2C144&amp;ssl=1 300w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/11/erceeii2.png?resize=768%2C370&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/11/erceeii2.png?resize=1024%2C493&amp;ssl=1 1024w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Actividad 3: Enrutamiento estático &#8211; Ruta por defecto</li>
<li>Topología actividad 3:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/11/erceeii3.png" data-lbwps-width="1010" data-lbwps-height="551" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2016/11/erceeii3.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="4481" data-permalink="https://blog.ragasys.es/enrutamiento-en-routers-cisco-enrutamiento-estatico-ii/erceeii3#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/11/erceeii3.png?fit=1010%2C551&amp;ssl=1" data-orig-size="1010,551" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="erceeii3" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/11/erceeii3.png?fit=640%2C349&amp;ssl=1" class="aligncenter size-full wp-image-4481" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/11/erceeii3.png?resize=640%2C349" alt="erceeii3" width="640" height="349" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/11/erceeii3.png?w=1010&amp;ssl=1 1010w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/11/erceeii3.png?resize=300%2C164&amp;ssl=1 300w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/11/erceeii3.png?resize=768%2C419&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p>Para poder ver el diseño lógico y físico de la red necesitaréis el software packet tracer.</p>
<ul>
<li>Link de descarga actividad 1: <a href="https://www.dropbox.com/s/t7g0vnjedivd32n/04%20Enrutamientoestatico%20II.pkt?dl=0" target="_blank">Enrutamiento estático II</a></li>
<li>Link de descarga actividad 2: <a href="https://www.dropbox.com/s/9xkbcs031s5xz3a/05%20Enrutamiento%20estatico%20III.pkt?dl=0" target="_blank">Enrutamiento estático III</a></li>
<li>Link de descarga actividad 3: <a href="https://www.dropbox.com/s/s4uexk4kmsx772q/06%20Enrutamiento%20estatico_ruta_pordefecto.pkt?dl=0" target="_blank">Enrutamiento estático &#8211; Ruta por defecto</a></li>
</ul>
<p>Saludos y espero que os sea de ayuda <img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f609.png" alt="😉" class="wp-smiley" style="height: 1em; max-height: 1em;" /></p>
<p>La entrada <a href="https://blog.ragasys.es/enrutamiento-en-routers-cisco-enrutamiento-estatico-ii">Enrutamiento en Routers Cisco – Enrutamiento estático II</a> se publicó primero en <a href="https://blog.ragasys.es">RAGASYS SISTEMAS</a>.</p>
]]></content:encoded>
					
					<wfw:commentRss>https://blog.ragasys.es/enrutamiento-en-routers-cisco-enrutamiento-estatico-ii/feed</wfw:commentRss>
			<slash:comments>2</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">4478</post-id>	</item>
		<item>
		<title>Enrutamiento en Routers Cisco &#8211; Reglas básicas y enrutamiento estático I</title>
		<link>https://blog.ragasys.es/enrutamiento-en-routers-cisco-reglas-basicas-y-enrutamiento-estatico-i</link>
					<comments>https://blog.ragasys.es/enrutamiento-en-routers-cisco-reglas-basicas-y-enrutamiento-estatico-i#respond</comments>
		
		<dc:creator><![CDATA[Jose Ramon Ramos Gata]]></dc:creator>
		<pubDate>Mon, 07 Nov 2016 12:28:31 +0000</pubDate>
				<category><![CDATA[Cisco]]></category>
		<category><![CDATA[Enrutamiento]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[Routing]]></category>
		<category><![CDATA[Switching]]></category>
		<category><![CDATA[IOS Cisco]]></category>
		<category><![CDATA[Packet Tracer]]></category>
		<category><![CDATA[Protocolos de enrutamiento]]></category>
		<category><![CDATA[Routing & Switching]]></category>
		<guid isPermaLink="false">http://blog.ragasys.es/?p=4473</guid>

					<description><![CDATA[<p>Hola a tod@s. En las próximas entradas de networking vamos a ver los protocolos de enrutamiento en los routers Cisco, ya hemos visto algo referente a este tema en algunos post anteriores, pero quiero subir algunos ejemplos de diseños de&#8230; <a href="https://blog.ragasys.es/enrutamiento-en-routers-cisco-reglas-basicas-y-enrutamiento-estatico-i" class="more-link">Continuar leyendo <span class="meta-nav">&#8594;</span></a></p>
<p>La entrada <a href="https://blog.ragasys.es/enrutamiento-en-routers-cisco-reglas-basicas-y-enrutamiento-estatico-i">Enrutamiento en Routers Cisco &#8211; Reglas básicas y enrutamiento estático I</a> se publicó primero en <a href="https://blog.ragasys.es">RAGASYS SISTEMAS</a>.</p>
]]></description>
										<content:encoded><![CDATA[<p>Hola a tod@s.</p>
<p>En las próximas entradas de networking vamos a ver los protocolos de enrutamiento en los routers Cisco, ya hemos visto algo referente a este tema en algunos post anteriores, pero quiero subir algunos ejemplos de diseños de redes con Packet Tracer, ya que para los estudiantes de CCNA les puede venir muy bien para prácticar.</p>
<p>En este primer bloque sobre enrutamiento veremos las reglas básicas, las conexiones directas y enrutamiento estático, para ello aquí os dejo los siguientes diseños.</p>
<ul>
<li>Actividad 1: Reglas de enrutamiento básico</li>
<li>Topología actividad 1:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/11/ercrbee1.png" data-lbwps-width="1044" data-lbwps-height="563" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2016/11/ercrbee1.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="4474" data-permalink="https://blog.ragasys.es/enrutamiento-en-routers-cisco-reglas-basicas-y-enrutamiento-estatico-i/ercrbee1#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/11/ercrbee1.png?fit=1044%2C563&amp;ssl=1" data-orig-size="1044,563" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="ercrbee1" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/11/ercrbee1.png?fit=640%2C345&amp;ssl=1" class="aligncenter size-full wp-image-4474" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/11/ercrbee1.png?resize=640%2C345" alt="ercrbee1" width="640" height="345" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/11/ercrbee1.png?w=1044&amp;ssl=1 1044w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/11/ercrbee1.png?resize=300%2C162&amp;ssl=1 300w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/11/ercrbee1.png?resize=768%2C414&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/11/ercrbee1.png?resize=1024%2C552&amp;ssl=1 1024w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Actividad 2: Conexiones directas</li>
<li>Topología actividad 2:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/11/ercrbee2.png" data-lbwps-width="781" data-lbwps-height="368" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2016/11/ercrbee2.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="4475" data-permalink="https://blog.ragasys.es/enrutamiento-en-routers-cisco-reglas-basicas-y-enrutamiento-estatico-i/ercrbee2#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/11/ercrbee2.png?fit=781%2C368&amp;ssl=1" data-orig-size="781,368" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="ercrbee2" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/11/ercrbee2.png?fit=640%2C302&amp;ssl=1" class="aligncenter size-full wp-image-4475" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/11/ercrbee2.png?resize=640%2C302" alt="ercrbee2" width="640" height="302" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/11/ercrbee2.png?w=781&amp;ssl=1 781w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/11/ercrbee2.png?resize=300%2C141&amp;ssl=1 300w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/11/ercrbee2.png?resize=768%2C362&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Actividad 3: Enrutamiento estático I</li>
<li>Topología actividad 3:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/11/ercrbee3.png" data-lbwps-width="836" data-lbwps-height="350" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2016/11/ercrbee3.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="4476" data-permalink="https://blog.ragasys.es/enrutamiento-en-routers-cisco-reglas-basicas-y-enrutamiento-estatico-i/ercrbee3#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/11/ercrbee3.png?fit=836%2C350&amp;ssl=1" data-orig-size="836,350" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="ercrbee3" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/11/ercrbee3.png?fit=640%2C268&amp;ssl=1" class="aligncenter size-full wp-image-4476" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/11/ercrbee3.png?resize=640%2C268" alt="ercrbee3" width="640" height="268" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/11/ercrbee3.png?w=836&amp;ssl=1 836w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/11/ercrbee3.png?resize=300%2C126&amp;ssl=1 300w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/11/ercrbee3.png?resize=768%2C322&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p>Para poder ver el diseño lógico y físico de la red necesitaréis el software packet tracer.</p>
<ul>
<li>Link de descarga actividad 1: <a href="https://www.dropbox.com/s/olf24sa5obma6np/01%20Reglas%20de%20enrutamiento%20basico.pkt?dl=0" target="_blank">Reglas de enrutamiento básico</a></li>
<li>Link de descarga actividad 2: <a href="https://www.dropbox.com/s/n3n9hcu6a5uhysf/02%20Enrutamiento%20conexionesdirectas.pkt?dl=0" target="_blank">Conexiones directas</a></li>
<li>Link de descarga actividad 3: <a href="https://www.dropbox.com/s/wxhlxs41nxfbwlo/03%20Enrutamiento%20estatico%20I.pkt?dl=0" target="_blank">Enrutamiento estático I</a></li>
</ul>
<p>Saludos y espero que os sea de ayuda <img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f609.png" alt="😉" class="wp-smiley" style="height: 1em; max-height: 1em;" /></p>
<p>La entrada <a href="https://blog.ragasys.es/enrutamiento-en-routers-cisco-reglas-basicas-y-enrutamiento-estatico-i">Enrutamiento en Routers Cisco &#8211; Reglas básicas y enrutamiento estático I</a> se publicó primero en <a href="https://blog.ragasys.es">RAGASYS SISTEMAS</a>.</p>
]]></content:encoded>
					
					<wfw:commentRss>https://blog.ragasys.es/enrutamiento-en-routers-cisco-reglas-basicas-y-enrutamiento-estatico-i/feed</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">4473</post-id>	</item>
		<item>
		<title>NAT en Routers Cisco II</title>
		<link>https://blog.ragasys.es/nat-en-routers-cisco-i-2</link>
					<comments>https://blog.ragasys.es/nat-en-routers-cisco-i-2#respond</comments>
		
		<dc:creator><![CDATA[Jose Ramon Ramos Gata]]></dc:creator>
		<pubDate>Thu, 27 Oct 2016 06:44:29 +0000</pubDate>
				<category><![CDATA[Cisco]]></category>
		<category><![CDATA[NAT-PAT]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[Routing]]></category>
		<category><![CDATA[Switching]]></category>
		<category><![CDATA[IOS Cisco]]></category>
		<category><![CDATA[NAT]]></category>
		<category><![CDATA[Packet Tracer]]></category>
		<category><![CDATA[PAT]]></category>
		<category><![CDATA[Router Cisco]]></category>
		<category><![CDATA[Routing & Switching]]></category>
		<guid isPermaLink="false">http://blog.ragasys.es/?p=4465</guid>

					<description><![CDATA[<p>Hola a tod@s. En esta entrada vamos a ver la técnica NAT y los distintos tipos de NAT, que consiste en traducir direcciones IP, es decir, consiste en manipular los paquetes IPs y cambiar las direcciones IPs existentes por otras&#8230; <a href="https://blog.ragasys.es/nat-en-routers-cisco-i-2" class="more-link">Continuar leyendo <span class="meta-nav">&#8594;</span></a></p>
<p>La entrada <a href="https://blog.ragasys.es/nat-en-routers-cisco-i-2">NAT en Routers Cisco II</a> se publicó primero en <a href="https://blog.ragasys.es">RAGASYS SISTEMAS</a>.</p>
]]></description>
										<content:encoded><![CDATA[<p>Hola a tod@s.</p>
<p>En esta entrada vamos a ver la técnica NAT y los distintos tipos de NAT, que consiste en traducir direcciones IP, es decir, consiste en manipular los paquetes IPs y cambiar las direcciones IPs existentes por otras IPs, seguiremos con tres ejemplos de redes diseñadas con el software Cisco Packet Tracer, les vendrán muy bien a los estudiantes del CCNA para prácticar.</p>
<ul>
<li>Actividad 1: P<i>AT dinámica</i></li>
<li>Topología actividad 1:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/10/nrc2pad.png" data-lbwps-width="1037" data-lbwps-height="571" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2016/10/nrc2pad.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="4468" data-permalink="https://blog.ragasys.es/nat-en-routers-cisco-i-2/nrc2pad#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/10/nrc2pad.png?fit=1037%2C571&amp;ssl=1" data-orig-size="1037,571" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="nrc2pad" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/10/nrc2pad.png?fit=640%2C353&amp;ssl=1" class="aligncenter size-full wp-image-4468" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/10/nrc2pad.png?resize=640%2C352" alt="nrc2pad" width="640" height="352" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/10/nrc2pad.png?w=1037&amp;ssl=1 1037w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/10/nrc2pad.png?resize=300%2C165&amp;ssl=1 300w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/10/nrc2pad.png?resize=768%2C423&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/10/nrc2pad.png?resize=1024%2C564&amp;ssl=1 1024w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Actividad 2: P<i>AT dinámica &#8211; abrir puertos</i></li>
<li>Topología actividad 2:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/10/nrc2pdap.png" data-lbwps-width="1005" data-lbwps-height="620" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2016/10/nrc2pdap.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="4467" data-permalink="https://blog.ragasys.es/nat-en-routers-cisco-i-2/nrc2pdap#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/10/nrc2pdap.png?fit=1005%2C620&amp;ssl=1" data-orig-size="1005,620" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="nrc2pdap" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/10/nrc2pdap.png?fit=640%2C395&amp;ssl=1" class="aligncenter size-full wp-image-4467" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/10/nrc2pdap.png?resize=640%2C395" alt="nrc2pdap" width="640" height="395" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/10/nrc2pdap.png?w=1005&amp;ssl=1 1005w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/10/nrc2pdap.png?resize=300%2C185&amp;ssl=1 300w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/10/nrc2pdap.png?resize=768%2C474&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Actividad 3: Caso práctico NAT</li>
<li>Topología actividad 3:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/10/nrc2cpn.png" data-lbwps-width="1032" data-lbwps-height="514" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2016/10/nrc2cpn.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="4469" data-permalink="https://blog.ragasys.es/nat-en-routers-cisco-i-2/nrc2cpn#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/10/nrc2cpn.png?fit=1032%2C514&amp;ssl=1" data-orig-size="1032,514" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="nrc2cpn" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/10/nrc2cpn.png?fit=640%2C319&amp;ssl=1" class="aligncenter size-full wp-image-4469" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/10/nrc2cpn.png?resize=640%2C319" alt="nrc2cpn" width="640" height="319" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/10/nrc2cpn.png?w=1032&amp;ssl=1 1032w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/10/nrc2cpn.png?resize=300%2C149&amp;ssl=1 300w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/10/nrc2cpn.png?resize=768%2C383&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/10/nrc2cpn.png?resize=1024%2C510&amp;ssl=1 1024w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p>Para poder ver el diseño lógico y físico de la red necesitaréis el software packet tracer.</p>
<ul>
<li>Link de descarga actividad 1: <a href="https://www.dropbox.com/s/3j5ufsrfgiq2zhu/PAT_dinamica.pkt?dl=0" target="_blank">P<i>AT dinámica</i></a></li>
<li>Link de descarga actividad 2: <a href="https://www.dropbox.com/s/rc8zih7lmakudwi/PAT_dinamica_abrir_puertos.pkt?dl=0" target="_blank">P<i>AT dinámica &#8211; abrir puertos</i></a></li>
<li>Link de descarga actividad 3: <a href="https://www.dropbox.com/s/mymtab1828f4439/Ejercicio_NAT.pkt?dl=0" target="_blank">Caso práctico NAT</a></li>
</ul>
<p>Actividades propuestas por el profesor Manuel Castaño Guillén.</p>
<p>Saludos y espero que os sea de ayuda <img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f609.png" alt="😉" class="wp-smiley" style="height: 1em; max-height: 1em;" /></p>
<p>La entrada <a href="https://blog.ragasys.es/nat-en-routers-cisco-i-2">NAT en Routers Cisco II</a> se publicó primero en <a href="https://blog.ragasys.es">RAGASYS SISTEMAS</a>.</p>
]]></content:encoded>
					
					<wfw:commentRss>https://blog.ragasys.es/nat-en-routers-cisco-i-2/feed</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">4465</post-id>	</item>
		<item>
		<title>NAT en Routers Cisco I</title>
		<link>https://blog.ragasys.es/nat-en-routers-cisco-i</link>
					<comments>https://blog.ragasys.es/nat-en-routers-cisco-i#comments</comments>
		
		<dc:creator><![CDATA[Jose Ramon Ramos Gata]]></dc:creator>
		<pubDate>Mon, 24 Oct 2016 09:22:49 +0000</pubDate>
				<category><![CDATA[Cisco]]></category>
		<category><![CDATA[NAT-PAT]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[Routing]]></category>
		<category><![CDATA[Switching]]></category>
		<category><![CDATA[IOS Cisco]]></category>
		<category><![CDATA[NAT]]></category>
		<category><![CDATA[Packet Tracer]]></category>
		<category><![CDATA[PAT]]></category>
		<category><![CDATA[Router Cisco]]></category>
		<category><![CDATA[Routing & Switching]]></category>
		<guid isPermaLink="false">http://blog.ragasys.es/?p=4460</guid>

					<description><![CDATA[<p>Hola a tod@s. En esta entrada vamos a ver la técnica NAT y los distintos tipos de NAT, que consiste en traducir direcciones IP, es decir, consiste en manipular los paquetes IPs y cambiar las direcciones IPs existentes por otras&#8230; <a href="https://blog.ragasys.es/nat-en-routers-cisco-i" class="more-link">Continuar leyendo <span class="meta-nav">&#8594;</span></a></p>
<p>La entrada <a href="https://blog.ragasys.es/nat-en-routers-cisco-i">NAT en Routers Cisco I</a> se publicó primero en <a href="https://blog.ragasys.es">RAGASYS SISTEMAS</a>.</p>
]]></description>
										<content:encoded><![CDATA[<p>Hola a tod@s.</p>
<p>En esta entrada vamos a ver la técnica NAT y los distintos tipos de NAT, que consiste en traducir direcciones IP, es decir, consiste en manipular los paquetes IPs y cambiar las direcciones IPs existentes por otras IPs, empezaremos con tres ejemplos de redes diseñadas con el software Cisco Packet Tracer, les vendrán muy bien a los estudiantes del CCNA para prácticar.</p>
<ul>
<li>Actividad 1: <i>NAT dinámica</i></li>
<li>Topología actividad 1:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/10/nrc1nd.png" data-lbwps-width="1015" data-lbwps-height="553" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2016/10/nrc1nd.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="4461" data-permalink="https://blog.ragasys.es/nat-en-routers-cisco-i/nrc1nd#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/10/nrc1nd.png?fit=1015%2C553&amp;ssl=1" data-orig-size="1015,553" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="nrc1nd" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/10/nrc1nd.png?fit=640%2C349&amp;ssl=1" class="aligncenter size-full wp-image-4461" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/10/nrc1nd.png?resize=640%2C349" alt="nrc1nd" width="640" height="349" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/10/nrc1nd.png?w=1015&amp;ssl=1 1015w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/10/nrc1nd.png?resize=300%2C163&amp;ssl=1 300w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/10/nrc1nd.png?resize=768%2C418&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Actividad 2: <i>NAT estática</i></li>
<li>Topología actividad 2:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/10/nrc1ne.png" data-lbwps-width="1045" data-lbwps-height="495" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2016/10/nrc1ne.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="4462" data-permalink="https://blog.ragasys.es/nat-en-routers-cisco-i/nrc1ne#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/10/nrc1ne.png?fit=1045%2C495&amp;ssl=1" data-orig-size="1045,495" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="nrc1ne" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/10/nrc1ne.png?fit=640%2C303&amp;ssl=1" class="aligncenter size-full wp-image-4462" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/10/nrc1ne.png?resize=640%2C303" alt="nrc1ne" width="640" height="303" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/10/nrc1ne.png?w=1045&amp;ssl=1 1045w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/10/nrc1ne.png?resize=300%2C142&amp;ssl=1 300w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/10/nrc1ne.png?resize=768%2C364&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/10/nrc1ne.png?resize=1024%2C485&amp;ssl=1 1024w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Actividad 3: P<i>AT típica router ADSL</i></li>
<li>Topología actividad 3:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/10/nrc1pta.png" data-lbwps-width="863" data-lbwps-height="407" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2016/10/nrc1pta.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="4463" data-permalink="https://blog.ragasys.es/nat-en-routers-cisco-i/nrc1pta#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/10/nrc1pta.png?fit=863%2C407&amp;ssl=1" data-orig-size="863,407" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="nrc1pta" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/10/nrc1pta.png?fit=640%2C302&amp;ssl=1" class="aligncenter size-full wp-image-4463" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/10/nrc1pta.png?resize=640%2C302" alt="nrc1pta" width="640" height="302" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/10/nrc1pta.png?w=863&amp;ssl=1 863w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/10/nrc1pta.png?resize=300%2C141&amp;ssl=1 300w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/10/nrc1pta.png?resize=768%2C362&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p>Para poder ver el diseño lógico y físico de la red necesitaréis el software packet tracer.</p>
<ul>
<li>Link de descarga actividad 1: <a href="https://www.dropbox.com/s/tjzoeq02vvccvu1/NAT_dinamica.pkt?dl=0" target="_blank"><i>NAT dinámica</i></a></li>
<li>Link de descarga actividad 2: <a href="https://www.dropbox.com/s/dpc61qqwdf8kp6a/NAT_estatica.pkt?dl=0" target="_blank"><i>NAT estática</i></a></li>
<li>Link de descarga actividad 3: <a href="https://www.dropbox.com/s/iw0lqca2f1hcrhs/NPAT_tipica_router_ADSL.pkt?dl=0" target="_blank">P<i>AT típica router ADSL</i></a></li>
</ul>
<p>Actividades propuestas por el profesor Manuel Castaño Guillén.</p>
<p>Saludos y espero que os sea de ayuda <img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f609.png" alt="😉" class="wp-smiley" style="height: 1em; max-height: 1em;" /></p>
<p>La entrada <a href="https://blog.ragasys.es/nat-en-routers-cisco-i">NAT en Routers Cisco I</a> se publicó primero en <a href="https://blog.ragasys.es">RAGASYS SISTEMAS</a>.</p>
]]></content:encoded>
					
					<wfw:commentRss>https://blog.ragasys.es/nat-en-routers-cisco-i/feed</wfw:commentRss>
			<slash:comments>3</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">4460</post-id>	</item>
		<item>
		<title>Switches y Conmutación Cisco II</title>
		<link>https://blog.ragasys.es/switches-y-conmutacion-cisco-ii</link>
					<comments>https://blog.ragasys.es/switches-y-conmutacion-cisco-ii#respond</comments>
		
		<dc:creator><![CDATA[Jose Ramon Ramos Gata]]></dc:creator>
		<pubDate>Fri, 23 Sep 2016 05:31:19 +0000</pubDate>
				<category><![CDATA[Cisco]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[Routing]]></category>
		<category><![CDATA[Switching]]></category>
		<category><![CDATA[IOS Cisco]]></category>
		<category><![CDATA[Packet Tracer]]></category>
		<category><![CDATA[Router Cisco]]></category>
		<category><![CDATA[Routing & Switching]]></category>
		<guid isPermaLink="false">http://blog.ragasys.es/?p=4128</guid>

					<description><![CDATA[<p>Hola a tod@s. En esta entrada vamos a ver como trabajar con switches de la compañía Cisco con 5 ejemplos de redes diseñadas con el software Cisco Packet Tracer, les vendrán muy bien a los estudiantes del CCNA para prácticar.&#8230; <a href="https://blog.ragasys.es/switches-y-conmutacion-cisco-ii" class="more-link">Continuar leyendo <span class="meta-nav">&#8594;</span></a></p>
<p>La entrada <a href="https://blog.ragasys.es/switches-y-conmutacion-cisco-ii">Switches y Conmutación Cisco II</a> se publicó primero en <a href="https://blog.ragasys.es">RAGASYS SISTEMAS</a>.</p>
]]></description>
										<content:encoded><![CDATA[<p>Hola a tod@s.</p>
<p>En esta entrada vamos a ver como trabajar con switches de la compañía Cisco con 5 ejemplos de redes diseñadas con el software Cisco Packet Tracer, les vendrán muy bien a los estudiantes del CCNA para prácticar.</p>
<ul>
<li>Actividad 1: VLAN Datos y VoIP</li>
<li>Topología actividad 1:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/ascc_a1.png" data-lbwps-width="1012" data-lbwps-height="515" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2016/09/ascc_a1.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="4129" data-permalink="https://blog.ragasys.es/switches-y-conmutacion-cisco-ii/ascc_a1#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/ascc_a1.png?fit=1012%2C515&amp;ssl=1" data-orig-size="1012,515" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="ascc_a1" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/ascc_a1.png?fit=640%2C326&amp;ssl=1" class="aligncenter size-full wp-image-4129" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/ascc_a1.png?resize=640%2C326" alt="ascc_a1" width="640" height="326" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/ascc_a1.png?w=1012&amp;ssl=1 1012w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/ascc_a1.png?resize=300%2C153&amp;ssl=1 300w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/ascc_a1.png?resize=768%2C391&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Actividad 2: Supuesto práctico sobre VLANs I</li>
<li>Topología actividad 2:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/ascc_a2.png" data-lbwps-width="995" data-lbwps-height="434" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2016/09/ascc_a2.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="4130" data-permalink="https://blog.ragasys.es/switches-y-conmutacion-cisco-ii/ascc_a2#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/ascc_a2.png?fit=995%2C434&amp;ssl=1" data-orig-size="995,434" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="ascc_a2" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/ascc_a2.png?fit=640%2C279&amp;ssl=1" class="aligncenter size-full wp-image-4130" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/ascc_a2.png?resize=640%2C279" alt="ascc_a2" width="640" height="279" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/ascc_a2.png?w=995&amp;ssl=1 995w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/ascc_a2.png?resize=300%2C131&amp;ssl=1 300w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/ascc_a2.png?resize=768%2C335&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Actividad 3: Supuesto práctico sobre VLANs II</li>
<li>Topología actividad 3:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/ascc_a3.png" data-lbwps-width="1007" data-lbwps-height="546" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2016/09/ascc_a3.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="4131" data-permalink="https://blog.ragasys.es/switches-y-conmutacion-cisco-ii/ascc_a3#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/ascc_a3.png?fit=1007%2C546&amp;ssl=1" data-orig-size="1007,546" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="ascc_a3" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/ascc_a3.png?fit=640%2C347&amp;ssl=1" class="aligncenter size-full wp-image-4131" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/ascc_a3.png?resize=640%2C347" alt="ascc_a3" width="640" height="347" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/ascc_a3.png?w=1007&amp;ssl=1 1007w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/ascc_a3.png?resize=300%2C163&amp;ssl=1 300w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/ascc_a3.png?resize=768%2C416&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Actividad 4: VoIP</li>
<li>Topología actividad 4:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/ascc_a4.png" data-lbwps-width="1171" data-lbwps-height="651" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2016/09/ascc_a4.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="4132" data-permalink="https://blog.ragasys.es/switches-y-conmutacion-cisco-ii/ascc_a4#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/ascc_a4.png?fit=1171%2C651&amp;ssl=1" data-orig-size="1171,651" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="ascc_a4" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/ascc_a4.png?fit=640%2C356&amp;ssl=1" class="aligncenter size-full wp-image-4132" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/ascc_a4.png?resize=640%2C356" alt="ascc_a4" width="640" height="356" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/ascc_a4.png?w=1171&amp;ssl=1 1171w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/ascc_a4.png?resize=300%2C167&amp;ssl=1 300w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/ascc_a4.png?resize=768%2C427&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/ascc_a4.png?resize=1024%2C569&amp;ssl=1 1024w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Actividad 5: Vlan Trunking Protocol &#8211; VTP</li>
<li>Topología actividad 5:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/ascc_a5.png" data-lbwps-width="1012" data-lbwps-height="508" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2016/09/ascc_a5.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="4133" data-permalink="https://blog.ragasys.es/switches-y-conmutacion-cisco-ii/ascc_a5#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/ascc_a5.png?fit=1012%2C508&amp;ssl=1" data-orig-size="1012,508" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="ascc_a5" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/ascc_a5.png?fit=640%2C321&amp;ssl=1" class="aligncenter size-full wp-image-4133" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/ascc_a5.png?resize=640%2C321" alt="ascc_a5" width="640" height="321" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/ascc_a5.png?w=1012&amp;ssl=1 1012w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/ascc_a5.png?resize=300%2C151&amp;ssl=1 300w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/ascc_a5.png?resize=768%2C386&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p>Para poder ver el diseño lógico y físico de la red necesitaréis el software packet tracer.</p>
<ul>
<li>Link de descarga actividad 1: <a href="https://www.dropbox.com/s/jlbvvv2w2codx1c/VLAN_datos_y_voz.pkt?dl=0" target="_blank">VLAN Datos y VoIP</a></li>
<li>Link de descarga actividad 2: <a href="https://www.dropbox.com/s/depq2x12ti1izos/VLAN1.pkt?dl=0" target="_blank">Supuesto práctico sobre VLANs I</a></li>
<li>Link de descarga actividad 3: <a href="https://www.dropbox.com/s/slcat6cds5si5ho/VLAN5.pkt?dl=0" target="_blank">Supuesto práctico sobre VLANs II</a></li>
<li>Link de descarga actividad 4: <a href="https://www.dropbox.com/s/yyupea2ybwfndob/VoIP.pkt?dl=0" target="_blank">VoIP</a></li>
<li>Link de descarga actividad 5: <a href="https://www.dropbox.com/s/9vte0c2j8dx505m/VTP.pkt?dl=0" target="_blank">Vlan Trunking Protocol &#8211; VTP</a></li>
</ul>
<p>Actividades propuestas por el profesor Manuel Castaño Guillén.</p>
<p>Saludos y espero que os sea de ayuda <img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f609.png" alt="😉" class="wp-smiley" style="height: 1em; max-height: 1em;" /></p>
<p>La entrada <a href="https://blog.ragasys.es/switches-y-conmutacion-cisco-ii">Switches y Conmutación Cisco II</a> se publicó primero en <a href="https://blog.ragasys.es">RAGASYS SISTEMAS</a>.</p>
]]></content:encoded>
					
					<wfw:commentRss>https://blog.ragasys.es/switches-y-conmutacion-cisco-ii/feed</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">4128</post-id>	</item>
		<item>
		<title>Switches y Conmutación Cisco I</title>
		<link>https://blog.ragasys.es/switches-y-conmutacion-cisco-i</link>
					<comments>https://blog.ragasys.es/switches-y-conmutacion-cisco-i#comments</comments>
		
		<dc:creator><![CDATA[Jose Ramon Ramos Gata]]></dc:creator>
		<pubDate>Wed, 21 Sep 2016 10:30:24 +0000</pubDate>
				<category><![CDATA[Cisco]]></category>
		<category><![CDATA[DHCP]]></category>
		<category><![CDATA[Etherchannel]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[Routing]]></category>
		<category><![CDATA[Switching]]></category>
		<category><![CDATA[IOS Cisco]]></category>
		<category><![CDATA[Packet Tracer]]></category>
		<category><![CDATA[Router Cisco]]></category>
		<category><![CDATA[Routing & Switching]]></category>
		<guid isPermaLink="false">http://blog.ragasys.es/?p=4118</guid>

					<description><![CDATA[<p>Hola a tod@s. En esta entrada vamos a ver como trabajar con switches de la compañía Cisco con 6 ejemplos de redes diseñadas con el software Cisco Packet Tracer, les vendrán muy bien a los estudiantes del CCNA para prácticar.&#8230; <a href="https://blog.ragasys.es/switches-y-conmutacion-cisco-i" class="more-link">Continuar leyendo <span class="meta-nav">&#8594;</span></a></p>
<p>La entrada <a href="https://blog.ragasys.es/switches-y-conmutacion-cisco-i">Switches y Conmutación Cisco I</a> se publicó primero en <a href="https://blog.ragasys.es">RAGASYS SISTEMAS</a>.</p>
]]></description>
										<content:encoded><![CDATA[<p>Hola a tod@s.</p>
<p>En esta entrada vamos a ver como trabajar con switches de la compañía Cisco con 6 ejemplos de redes diseñadas con el software Cisco Packet Tracer, les vendrán muy bien a los estudiantes del CCNA para prácticar.</p>
<ul>
<li>Actividad 1: Agregación de enlaces</li>
<li>Topología actividad 1:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/aecc_a1.png" data-lbwps-width="1045" data-lbwps-height="514" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2016/09/aecc_a1.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="4120" data-permalink="https://blog.ragasys.es/switches-y-conmutacion-cisco-i/aecc_a1#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/aecc_a1.png?fit=1045%2C514&amp;ssl=1" data-orig-size="1045,514" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="aecc_a1" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/aecc_a1.png?fit=640%2C315&amp;ssl=1" class="aligncenter size-full wp-image-4120" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/aecc_a1.png?resize=640%2C315" alt="aecc_a1" width="640" height="315" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/aecc_a1.png?w=1045&amp;ssl=1 1045w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/aecc_a1.png?resize=300%2C148&amp;ssl=1 300w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/aecc_a1.png?resize=768%2C378&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/aecc_a1.png?resize=1024%2C504&amp;ssl=1 1024w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Actividad 2: DHCP con VLANs</li>
<li>Topología actividad 2:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/dv_a2.png" data-lbwps-width="1007" data-lbwps-height="513" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2016/09/dv_a2.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="4121" data-permalink="https://blog.ragasys.es/switches-y-conmutacion-cisco-i/dv_a2#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/dv_a2.png?fit=1007%2C513&amp;ssl=1" data-orig-size="1007,513" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="dv_a2" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/dv_a2.png?fit=640%2C326&amp;ssl=1" class="aligncenter size-full wp-image-4121" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/dv_a2.png?resize=640%2C326" alt="dv_a2" width="640" height="326" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/dv_a2.png?w=1007&amp;ssl=1 1007w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/dv_a2.png?resize=300%2C153&amp;ssl=1 300w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/dv_a2.png?resize=768%2C391&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Actividad 3: Switch capa 3 y access point con router multifunción</li>
<li>Topología actividad 3:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/sc3apm_a3.png" data-lbwps-width="1193" data-lbwps-height="513" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2016/09/sc3apm_a3.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="4122" data-permalink="https://blog.ragasys.es/switches-y-conmutacion-cisco-i/sc3apm_a3#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/sc3apm_a3.png?fit=1193%2C513&amp;ssl=1" data-orig-size="1193,513" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="sc3apm_a3" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/sc3apm_a3.png?fit=640%2C275&amp;ssl=1" class="aligncenter size-full wp-image-4122" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/sc3apm_a3.png?resize=640%2C275" alt="sc3apm_a3" width="640" height="275" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/sc3apm_a3.png?w=1193&amp;ssl=1 1193w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/sc3apm_a3.png?resize=300%2C129&amp;ssl=1 300w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/sc3apm_a3.png?resize=768%2C330&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/sc3apm_a3.png?resize=1024%2C440&amp;ssl=1 1024w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Actividad 4: Spanning Tree Protocol &#8211; STP</li>
<li>Topología actividad 4:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/stp_a4.png" data-lbwps-width="808" data-lbwps-height="495" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2016/09/stp_a4.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="4123" data-permalink="https://blog.ragasys.es/switches-y-conmutacion-cisco-i/stp_a4#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/stp_a4.png?fit=808%2C495&amp;ssl=1" data-orig-size="808,495" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="stp_a4" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/stp_a4.png?fit=640%2C392&amp;ssl=1" class="aligncenter size-full wp-image-4123" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/stp_a4.png?resize=640%2C392" alt="stp_a4" width="640" height="392" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/stp_a4.png?w=808&amp;ssl=1 808w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/stp_a4.png?resize=300%2C184&amp;ssl=1 300w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/stp_a4.png?resize=768%2C470&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Actividad 5: Switch capa 3 como router</li>
<li>Topología actividad 5:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/sc3cr_a5.png" data-lbwps-width="1123" data-lbwps-height="573" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2016/09/sc3cr_a5.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="4124" data-permalink="https://blog.ragasys.es/switches-y-conmutacion-cisco-i/sc3cr_a5#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/sc3cr_a5.png?fit=1123%2C573&amp;ssl=1" data-orig-size="1123,573" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="sc3cr_a5" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/sc3cr_a5.png?fit=640%2C326&amp;ssl=1" class="aligncenter size-full wp-image-4124" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/sc3cr_a5.png?resize=640%2C327" alt="sc3cr_a5" width="640" height="327" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/sc3cr_a5.png?w=1123&amp;ssl=1 1123w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/sc3cr_a5.png?resize=300%2C153&amp;ssl=1 300w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/sc3cr_a5.png?resize=768%2C392&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/sc3cr_a5.png?resize=1024%2C522&amp;ssl=1 1024w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Actividad 6: Supuesto práctico sobre VLANs</li>
<li>Topología actividad 6:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/spsvlan_a6.png" data-lbwps-width="1035" data-lbwps-height="577" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2016/09/spsvlan_a6.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="4125" data-permalink="https://blog.ragasys.es/switches-y-conmutacion-cisco-i/spsvlan_a6#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/spsvlan_a6.png?fit=1035%2C577&amp;ssl=1" data-orig-size="1035,577" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="spsvlan_a6" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/spsvlan_a6.png?fit=640%2C357&amp;ssl=1" class="aligncenter size-full wp-image-4125" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/spsvlan_a6.png?resize=640%2C357" alt="spsvlan_a6" width="640" height="357" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/spsvlan_a6.png?w=1035&amp;ssl=1 1035w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/spsvlan_a6.png?resize=300%2C167&amp;ssl=1 300w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/spsvlan_a6.png?resize=768%2C428&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/spsvlan_a6.png?resize=1024%2C571&amp;ssl=1 1024w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p>Para poder ver el diseño lógico y físico de la red necesitaréis el software packet tracer.</p>
<ul>
<li>Link de descarga actividad 1: <a href="https://www.dropbox.com/s/uuygce1f1qjhgpv/agregarenlaces.pkt?dl=0" target="_blank">Agregación de enlaces</a></li>
<li>Link de descarga actividad 2: <a href="https://www.dropbox.com/s/q1jfpf7eve9wy73/DHCP_VLANS.pkt?dl=0" target="_blank">DHCP con VLANs</a></li>
<li>Link de descarga actividad 3: <a href="https://www.dropbox.com/s/vqoyudznwb5hh5l/MULTIFUNCION_con_S3_PA.pkt?dl=0" target="_blank">Switch capa 3 y access point con router multifunción</a></li>
<li>Link de descarga actividad 4: <a href="https://www.dropbox.com/s/51bbo0p0nl0v1j2/STP.pkt?dl=0" target="_blank">Spanning Tree Protocol &#8211; STP</a></li>
<li>Link de descarga actividad 5: <a href="https://www.dropbox.com/s/95422uhs22lwwy5/SwitchCapa3comoRouter.pkt?dl=0" target="_blank">Switch capa 3 como router</a></li>
<li>Link de descarga actividad 6: <a href="https://www.dropbox.com/s/lexzft9sa85d7ui/VLAN_2s.pkt?dl=0" target="_blank">Supuesto práctico sobre VLANs</a></li>
</ul>
<p>Actividades propuestas por el profesor Manuel Castaño Guillén.</p>
<p>Saludos y espero que os sea de ayuda <img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f609.png" alt="😉" class="wp-smiley" style="height: 1em; max-height: 1em;" /></p>
<p>La entrada <a href="https://blog.ragasys.es/switches-y-conmutacion-cisco-i">Switches y Conmutación Cisco I</a> se publicó primero en <a href="https://blog.ragasys.es">RAGASYS SISTEMAS</a>.</p>
]]></content:encoded>
					
					<wfw:commentRss>https://blog.ragasys.es/switches-y-conmutacion-cisco-i/feed</wfw:commentRss>
			<slash:comments>3</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">4118</post-id>	</item>
		<item>
		<title>Servicios IP</title>
		<link>https://blog.ragasys.es/servicios-ip</link>
					<comments>https://blog.ragasys.es/servicios-ip#respond</comments>
		
		<dc:creator><![CDATA[Jose Ramon Ramos Gata]]></dc:creator>
		<pubDate>Tue, 13 Sep 2016 09:24:28 +0000</pubDate>
				<category><![CDATA[AAA]]></category>
		<category><![CDATA[Cisco]]></category>
		<category><![CDATA[DHCP]]></category>
		<category><![CDATA[DNS]]></category>
		<category><![CDATA[FTP]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[Routing]]></category>
		<category><![CDATA[Servidor de correos]]></category>
		<category><![CDATA[Switching]]></category>
		<category><![CDATA[IOS Cisco]]></category>
		<category><![CDATA[Packet Tracer]]></category>
		<category><![CDATA[Router Cisco]]></category>
		<category><![CDATA[Routing & Switching]]></category>
		<guid isPermaLink="false">http://blog.ragasys.es/?p=4085</guid>

					<description><![CDATA[<p>Hola a tod@s. En esta entrada vamos a ver los servicios IP con cinco ejemplos de redes diseñadas con el software Cisco Packet Tracer, les vendrán muy bien a los estudiantes del CCNA para prácticar. Actividad 1: AAA (Authentication, Authorization and Accounting)&#8230; <a href="https://blog.ragasys.es/servicios-ip" class="more-link">Continuar leyendo <span class="meta-nav">&#8594;</span></a></p>
<p>La entrada <a href="https://blog.ragasys.es/servicios-ip">Servicios IP</a> se publicó primero en <a href="https://blog.ragasys.es">RAGASYS SISTEMAS</a>.</p>
]]></description>
										<content:encoded><![CDATA[<p>Hola a tod@s.</p>
<p>En esta entrada vamos a ver los servicios IP con cinco ejemplos de redes diseñadas con el software Cisco Packet Tracer, les vendrán muy bien a los estudiantes del CCNA para prácticar.</p>
<ul>
<li>Actividad 1: AAA <em>(Authentication, Authorization and Accounting)</em></li>
<li>Topología actividad 1:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/cptAAA.png" data-lbwps-width="1046" data-lbwps-height="449" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2016/09/cptAAA.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="4086" data-permalink="https://blog.ragasys.es/servicios-ip/cptaaa#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/cptAAA.png?fit=1046%2C449&amp;ssl=1" data-orig-size="1046,449" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cptAAA" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/cptAAA.png?fit=640%2C275&amp;ssl=1" class="aligncenter size-full wp-image-4086" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/cptAAA.png?resize=640%2C275" alt="cptAAA" width="640" height="275" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/cptAAA.png?w=1046&amp;ssl=1 1046w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/cptAAA.png?resize=300%2C129&amp;ssl=1 300w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/cptAAA.png?resize=768%2C330&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/cptAAA.png?resize=1024%2C440&amp;ssl=1 1024w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Actividad 2: CORREO</li>
<li>Topología actividad 2:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/cptcorreo.png" data-lbwps-width="1046" data-lbwps-height="447" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2016/09/cptcorreo.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="4087" data-permalink="https://blog.ragasys.es/servicios-ip/cptcorreo#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/cptcorreo.png?fit=1046%2C447&amp;ssl=1" data-orig-size="1046,447" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cptcorreo" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/cptcorreo.png?fit=640%2C274&amp;ssl=1" class="aligncenter size-full wp-image-4087" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/cptcorreo.png?resize=640%2C273" alt="cptcorreo" width="640" height="273" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/cptcorreo.png?w=1046&amp;ssl=1 1046w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/cptcorreo.png?resize=300%2C128&amp;ssl=1 300w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/cptcorreo.png?resize=768%2C328&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/cptcorreo.png?resize=1024%2C438&amp;ssl=1 1024w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Actividad 3: DHCP</li>
<li>Topología actividad 3:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/cptdhcp.png" data-lbwps-width="1046" data-lbwps-height="490" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2016/09/cptdhcp.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="4088" data-permalink="https://blog.ragasys.es/servicios-ip/cptdhcp#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/cptdhcp.png?fit=1046%2C490&amp;ssl=1" data-orig-size="1046,490" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cptdhcp" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/cptdhcp.png?fit=640%2C300&amp;ssl=1" class="aligncenter size-full wp-image-4088" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/cptdhcp.png?resize=640%2C300" alt="cptdhcp" width="640" height="300" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/cptdhcp.png?w=1046&amp;ssl=1 1046w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/cptdhcp.png?resize=300%2C141&amp;ssl=1 300w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/cptdhcp.png?resize=768%2C360&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/cptdhcp.png?resize=1024%2C480&amp;ssl=1 1024w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Actividad 4: DNS</li>
<li>Topología actividad 4:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/cptdns.png" data-lbwps-width="1048" data-lbwps-height="571" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2016/09/cptdns.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="4089" data-permalink="https://blog.ragasys.es/servicios-ip/cptdns#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/cptdns.png?fit=1048%2C571&amp;ssl=1" data-orig-size="1048,571" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cptdns" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/cptdns.png?fit=640%2C349&amp;ssl=1" class="aligncenter size-full wp-image-4089" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/cptdns.png?resize=640%2C349" alt="cptdns" width="640" height="349" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/cptdns.png?w=1048&amp;ssl=1 1048w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/cptdns.png?resize=300%2C163&amp;ssl=1 300w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/cptdns.png?resize=768%2C418&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/cptdns.png?resize=1024%2C558&amp;ssl=1 1024w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Actividad 5: FTP</li>
<li>Topología actividad 5:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/cptftp.png" data-lbwps-width="1192" data-lbwps-height="510" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2016/09/cptftp.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="4090" data-permalink="https://blog.ragasys.es/servicios-ip/cptftp#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/cptftp.png?fit=1192%2C510&amp;ssl=1" data-orig-size="1192,510" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="cptftp" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/cptftp.png?fit=640%2C274&amp;ssl=1" class="aligncenter size-full wp-image-4090" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/cptftp.png?resize=640%2C274" alt="cptftp" width="640" height="274" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/cptftp.png?w=1192&amp;ssl=1 1192w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/cptftp.png?resize=300%2C128&amp;ssl=1 300w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/cptftp.png?resize=768%2C329&amp;ssl=1 768w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/09/cptftp.png?resize=1024%2C438&amp;ssl=1 1024w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p>Para poder ver el diseño lógico y físico de la red necesitaréis el software packet tracer.</p>
<ul>
<li>Link de descarga actividad 1: <a href="https://www.dropbox.com/s/415ulnveifvg7m4/AAA.pkt?dl=0" target="_blank">AAA</a></li>
<li>Link de descarga actividad 2: <a href="https://www.dropbox.com/s/lswhshcay8dnx83/CORREO.pkt?dl=0" target="_blank">CORREO</a></li>
<li>Link de descarga actividad 3: <a href="https://www.dropbox.com/s/7zqb51ly62b4r3z/DHCP.pkt?dl=0" target="_blank">DHCP</a></li>
<li>Link de descarga actividad 4: <a href="https://www.dropbox.com/s/9wofp6qd1mcyh01/DNS.pkt?dl=0" target="_blank">DNS</a></li>
<li>Link de descarga actividad 5: <a href="https://www.dropbox.com/s/j491vfbz3fn72rg/FTP.pkt?dl=0" target="_blank">FTP</a></li>
</ul>
<p>Actividades propuestas por el profesor Manuel Castaño Guillén.</p>
<p>Saludos y espero que os sea de ayuda <img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f609.png" alt="😉" class="wp-smiley" style="height: 1em; max-height: 1em;" /></p>
<p>&nbsp;</p>
<p>La entrada <a href="https://blog.ragasys.es/servicios-ip">Servicios IP</a> se publicó primero en <a href="https://blog.ragasys.es">RAGASYS SISTEMAS</a>.</p>
]]></content:encoded>
					
					<wfw:commentRss>https://blog.ragasys.es/servicios-ip/feed</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">4085</post-id>	</item>
		<item>
		<title>Access Lists extendidas Cisco IV</title>
		<link>https://blog.ragasys.es/access-lists-extendidas-cisco-iv</link>
					<comments>https://blog.ragasys.es/access-lists-extendidas-cisco-iv#respond</comments>
		
		<dc:creator><![CDATA[Jose Ramon Ramos Gata]]></dc:creator>
		<pubDate>Thu, 25 Aug 2016 05:55:07 +0000</pubDate>
				<category><![CDATA[ACL]]></category>
		<category><![CDATA[Cisco]]></category>
		<category><![CDATA[Networking]]></category>
		<category><![CDATA[Routing]]></category>
		<category><![CDATA[Switching]]></category>
		<category><![CDATA[IOS Cisco]]></category>
		<category><![CDATA[Packet Tracer]]></category>
		<category><![CDATA[Router Cisco]]></category>
		<category><![CDATA[Routing & Switching]]></category>
		<guid isPermaLink="false">http://blog.ragasys.es/?p=3988</guid>

					<description><![CDATA[<p>Hola a tod@s. En esta entrada vamos a ver un poco de ACLs (Listas de control de acceso), en este caso ACLs extendidas, voy a subir tres actividades con este tipo de listas de control de acceso, les vendrán muy bien&#8230; <a href="https://blog.ragasys.es/access-lists-extendidas-cisco-iv" class="more-link">Continuar leyendo <span class="meta-nav">&#8594;</span></a></p>
<p>La entrada <a href="https://blog.ragasys.es/access-lists-extendidas-cisco-iv">Access Lists extendidas Cisco IV</a> se publicó primero en <a href="https://blog.ragasys.es">RAGASYS SISTEMAS</a>.</p>
]]></description>
										<content:encoded><![CDATA[<p>Hola a tod@s.</p>
<p>En esta entrada vamos a ver un poco de ACLs (Listas de control de acceso), en este caso ACLs extendidas, voy a subir tres actividades con este tipo de listas de control de acceso, les vendrán muy bien a los estudiantes del CCNA para prácticar.</p>
<p>Las ACL extendidas filtran los paquetes IP en función de varios atributos, como por ejemplo, tipo de protocolo, direcciones IP de origen, direcciones IP de destino, puertos TCP o UDP de origen, puertos TCP o UDP de destino e información opcional de tipo de protocolo para un control más exhasutivo.</p>
<ul>
<li>Actividad 9: Bloquear el acceso a Internet desde los servidores</li>
<li>Topología actividad 9:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/08/aclea9.png" data-lbwps-width="997" data-lbwps-height="480" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2016/08/aclea9.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="3989" data-permalink="https://blog.ragasys.es/access-lists-extendidas-cisco-iv/aclea9#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/08/aclea9.png?fit=997%2C480&amp;ssl=1" data-orig-size="997,480" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="aclea9" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/08/aclea9.png?fit=640%2C308&amp;ssl=1" class="aligncenter size-full wp-image-3989" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/08/aclea9.png?resize=640%2C308" alt="aclea9" width="640" height="308" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/08/aclea9.png?w=997&amp;ssl=1 997w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/08/aclea9.png?resize=300%2C144&amp;ssl=1 300w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/08/aclea9.png?resize=768%2C370&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Actividad 10: Bloquear el acceso cuando se inicia desde el exterior a la red 20.0.0.0/8</li>
<li>Topología actividad 10:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/08/aclea10.png" data-lbwps-width="1000" data-lbwps-height="505" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2016/08/aclea10.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="3990" data-permalink="https://blog.ragasys.es/access-lists-extendidas-cisco-iv/aclea10#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/08/aclea10.png?fit=1000%2C505&amp;ssl=1" data-orig-size="1000,505" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="aclea10" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/08/aclea10.png?fit=640%2C323&amp;ssl=1" class="aligncenter size-full wp-image-3990" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/08/aclea10.png?resize=640%2C323" alt="aclea10" width="640" height="323" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/08/aclea10.png?w=1000&amp;ssl=1 1000w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/08/aclea10.png?resize=300%2C152&amp;ssl=1 300w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/08/aclea10.png?resize=768%2C388&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<ul>
<li>Actividad 11: Permitir el tráfico en las redes 20.0.0.0/8 y 40.0.0.0/8 cuando es originado en 30.0.0.0/8</li>
<li>Topología actividad 11:</li>
</ul>
<p><a href="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/08/aclea11.png" data-lbwps-width="1001" data-lbwps-height="479" data-lbwps-srcsmall="https://blog.ragasys.es/wp-content/uploads/2016/08/aclea11.png"><img data-recalc-dims="1" loading="lazy" decoding="async" data-attachment-id="3991" data-permalink="https://blog.ragasys.es/access-lists-extendidas-cisco-iv/aclea11#main" data-orig-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/08/aclea11.png?fit=1001%2C479&amp;ssl=1" data-orig-size="1001,479" data-comments-opened="1" data-image-meta="{&quot;aperture&quot;:&quot;0&quot;,&quot;credit&quot;:&quot;&quot;,&quot;camera&quot;:&quot;&quot;,&quot;caption&quot;:&quot;&quot;,&quot;created_timestamp&quot;:&quot;0&quot;,&quot;copyright&quot;:&quot;&quot;,&quot;focal_length&quot;:&quot;0&quot;,&quot;iso&quot;:&quot;0&quot;,&quot;shutter_speed&quot;:&quot;0&quot;,&quot;title&quot;:&quot;&quot;,&quot;orientation&quot;:&quot;0&quot;}" data-image-title="aclea11" data-image-description="" data-image-caption="" data-large-file="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/08/aclea11.png?fit=640%2C306&amp;ssl=1" class="aligncenter size-full wp-image-3991" src="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/08/aclea11.png?resize=640%2C306" alt="aclea11" width="640" height="306" srcset="https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/08/aclea11.png?w=1001&amp;ssl=1 1001w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/08/aclea11.png?resize=300%2C144&amp;ssl=1 300w, https://i0.wp.com/blog.ragasys.es/wp-content/uploads/2016/08/aclea11.png?resize=768%2C368&amp;ssl=1 768w" sizes="auto, (max-width: 640px) 100vw, 640px" /></a></p>
<p>Para poder ver el diseño lógico y físico de la red necesitaréis el software packet tracer.</p>
<ul>
<li>Link de descarga actividad 1: <a href="https://www.dropbox.com/s/u12uiscnl3dsx05/aclextendida9.pkt?dl=0" target="_blank">ACL Extendida 9</a></li>
<li>Link de descarga actividad 2: <a href="https://www.dropbox.com/s/38etm44251mzw5h/aclextendida10.pkt?dl=0" target="_blank">ACL Extendida 10</a></li>
<li>Link de descarga actividad 3: <a href="https://www.dropbox.com/s/3t5gvnwn1dpql0d/aclextendida11.pkt?dl=0" target="_blank">ACL Extendida 11</a></li>
</ul>
<p>Actividades propuestas por el profesor Manuel Castaño Guillén.</p>
<p>Saludos y espero que os sea de ayuda <img src="https://s.w.org/images/core/emoji/17.0.2/72x72/1f609.png" alt="😉" class="wp-smiley" style="height: 1em; max-height: 1em;" /></p>
<p>La entrada <a href="https://blog.ragasys.es/access-lists-extendidas-cisco-iv">Access Lists extendidas Cisco IV</a> se publicó primero en <a href="https://blog.ragasys.es">RAGASYS SISTEMAS</a>.</p>
]]></content:encoded>
					
					<wfw:commentRss>https://blog.ragasys.es/access-lists-extendidas-cisco-iv/feed</wfw:commentRss>
			<slash:comments>0</slash:comments>
		
		
		<post-id xmlns="com-wordpress:feed-additions:1">3988</post-id>	</item>
	</channel>
</rss>
