System network
Interface
FortiGate-3000 Administration Guide
01-28006-0010-20041105
59
MTU
To improve network performance, you can change the maximum transmission unit
(MTU) of the packets that the FortiGate unit transmits from any interface. Ideally, this
MTU should be the same as the smallest MTU of all the networks between the
FortiGate unit and the destination of the packets. If the packets that the FortiGate unit
sends are larger, they are broken up or fragmented, which slows down transmission.
Experiment by lowering the MTU to find an MTU size for best network performance.
To change the MTU, select Override default MTU value (1500) and enter the
maximum packet size. For manual and DHCP addressing mode the MTU size can be
from 576 to 1500 bytes. For PPPoE addressing mode the MTU size can be from 576
to 1492 bytes.
Log
Select Log to record logs for any traffic to or from the interface. To record logs you
must also enable traffic log for a logging location and set the logging severity level to
Notification or lower. Go to
Log & Report > Log Config
to configure logging locations
and types. For information about logging see
“Log & Report” on page 357
.
Configuring interfaces
Use the following procedures to configure FortiGate interfaces and VLAN
subinterfaces.
•
To bring down an interface that is administratively up
•
To add interfaces to a zone
•
To add an interface to a virtual domain
•
To change the static IP address of an interface
•
To configure an interface for DHCP
•
To configure an interface for PPPoE
•
To add a secondary IP address
•
To add a ping server to an interface
•
To control administrative access to an interface
•
To change the MTU size of the packets leaving an interface
•
To configure traffic logging for connections to an interface
To add a VLAN subinterface
See
“To add a VLAN subinterface in NAT/Route mode” on page 71
.
SSH
To allow SSH connections to the CLI through this interface.
SNMP
To allow a remote SNMP manager to request SNMP information by connecting to
this interface. See
“Configuring SNMP” on page 104
.
TELNET
To allow Telnet connections to the CLI through this interface. Telnet connections
are not secure and can be intercepted by a third party.
Note:
In Transparent mode, if you change the MTU of an interface, you must change the MTU
of all interfaces to match the new MTU.
Summary of Contents for FortiGate 3000
Page 18: ...Contents 18 01 28006 0010 20041105 Fortinet Inc ...
Page 52: ...52 01 28006 0010 20041105 Fortinet Inc Changing the FortiGate firmware System status ...
Page 78: ...78 01 28006 0010 20041105 Fortinet Inc FortiGate IPv6 support System network ...
Page 86: ...86 01 28006 0010 20041105 Fortinet Inc Dynamic IP System DHCP ...
Page 116: ...116 01 28006 0010 20041105 Fortinet Inc FortiManager System config ...
Page 122: ...122 01 28006 0010 20041105 Fortinet Inc Access profiles System administration ...
Page 252: ...252 01 28006 0010 20041105 Fortinet Inc CLI configuration Users and authentication ...
Page 390: ...390 01 28006 0010 20041105 Fortinet Inc Glossary ...
Page 398: ...398 01 28006 0010 20041105 Fortinet Inc Index ...