This study aims to carry out an analysis of requirements that corporate companies have in terms of connectivity with their branches, a network topology was designed that allows the connection and interactivity of a matrix with two branches using an SD-WAN network architecture, it was emulated in the EVE-NG software with Fortinet equipment, and a VMware virtual machine. Configuration was made for EVE-NG, FortiGate ISO images, FortiAnalyzer, FortiManager and end-user computers with free Ubuntu software. The WAN and LAN interfaces of each branch were configured, broadband connection, security policies, creation of IPsec tunnels, traffic prioritization and efficient routing; within the FortiGate team interface. With the configurations made in FortiGate together with FortiManager, you can edit, add or remove security policies and in turn keep tabs on the devices that keep the network secure in an easy-to-understand centralized interface. FortiAnalyzer was used for the analysis, verification and detection of vulnerabilities. Finally, in the emulation and testing phase, the connectivity between matrix and branches in the end equipment with Ubuntu software was verified, in addition to the visualization of the configurations, link monitoring, network status analysis provided by the FAZ and FMG equipment.

错误:搜索内容不能为空,请输入英文关键词
错误:关键词超出字数限制,请精简
高级检索

Secure SD-WAN Network Solution for Corporate Enterprises Using Fortinet and EVE-NG Emulator

  • José Javier De la Torre-Guzmán,
  • Martha Elizabeth Salazar-Jácome,
  • Félix Chávez-Jácome,
  • Wilson Sánchez-Ocaña

摘要

This study aims to carry out an analysis of requirements that corporate companies have in terms of connectivity with their branches, a network topology was designed that allows the connection and interactivity of a matrix with two branches using an SD-WAN network architecture, it was emulated in the EVE-NG software with Fortinet equipment, and a VMware virtual machine. Configuration was made for EVE-NG, FortiGate ISO images, FortiAnalyzer, FortiManager and end-user computers with free Ubuntu software. The WAN and LAN interfaces of each branch were configured, broadband connection, security policies, creation of IPsec tunnels, traffic prioritization and efficient routing; within the FortiGate team interface. With the configurations made in FortiGate together with FortiManager, you can edit, add or remove security policies and in turn keep tabs on the devices that keep the network secure in an easy-to-understand centralized interface. FortiAnalyzer was used for the analysis, verification and detection of vulnerabilities. Finally, in the emulation and testing phase, the connectivity between matrix and branches in the end equipment with Ubuntu software was verified, in addition to the visualization of the configurations, link monitoring, network status analysis provided by the FAZ and FMG equipment.