nastavit heslo dle systemu aktivovat na support.fortinet.com oznacit v Asset jmeno zakaznika upgrade na novy firmware network - interfaces - wan - Scan outgoing connections to botnet sites: block system - administrators - nastavit Restrict login to trusted hosts - lokalni sit a 188.120.193.0/28 a 188.120.193.208/28 system - settings - timezone - https nastavit na 9443 - idle timeout na 15 minut system - snmp - zapnout snmp agent a nastavit - pridat u snmp 1/2 komunitu kostax - pridat ip adresu 188.120.193.5 a host type na Accept queries only system - Fortiguard - zapnout Accept push updates - kliknout na Update AV & IPS definitions system - feature visibility - Intrusion prevention - Certificates - DNS database - Multiple Security profiles nastavit security profily (IPS) dle potreby - pro win servery - mailserver - ochrana stanic SSL VPN - vybrat interface na kterem bude poslouchat ip v4 policy - pokud maji mail server tak blokovat port 25 krome serveru 12bene63