kctesting Posted March 1, 2016 Posted March 1, 2016 Hi, If you are with JA.net you probably already know that from the end of March they will not route traffic outside (Internet) through their Network Infrastructure IP addresses. All fine for clients as you can use IP Pools but all Fortigate services ( license, antivirus, antispam, webfiltering) will try to go through the same interface without success. If you have MSR with JA.net then all should be ok but if your Fortigate Firewall is directly connected to JA.net infrastructure what do you plan to do?
kctesting Posted March 14, 2016 Author Posted March 14, 2016 Fortinet has an answer to this: Create a Management VDOM; enable VDOMs ( if you haven't done that already): - Create a VDOM called Management ( or whatever you like) ; your existing firewall config will remain on root automatically - Create an inter-VDOM routing link to direct traffic from the Management VDOM to the root VDOM and out on to the internet - Enable NAT to your IP pools on that inter-VDOM link - Assign the Management VDOM the ‘management’ role
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now