FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
Not applicable
Article Id 190960
Article

Test purpose

A partner asked if a FortiGate product doesn’t support IPS load balance feature with HA A-A configuration. This document provides an evaluation to clear that point them for government project.

Configuration

  • 2 x FortiGate 60B v3.00,build0726 (MR7)
  • NAT mode
  • Client PC connect to DMZ port. Target server connect to WAN1 port.

Test scenarios

  • Setup HA A-A configuration.
  • Enable IPS and logging feature with Protection Profile.
  • Enable Protection Profile on Firewall policy.
  • Install nmap to client PC which is port scan tool.