Jump to content
EduGeek EdSec 2026 is Go! 27th Oct in Derby! Join us for a day of EdTech security focused talks, networking, and an evening social ×

Recommended Posts

Posted

Hi,

 

If you are with JA.net you probably already know that from the end of March they will not route traffic outside (Internet) through their Network Infrastructure IP addresses.

All fine for clients as you can use IP Pools but all Fortigate services ( license, antivirus, antispam, webfiltering) will try to go through the same interface without success.

 

If you have MSR with JA.net then all should be ok but if your Fortigate Firewall is directly connected to JA.net infrastructure what do you plan to do?

  • 2 weeks later...
Posted

Fortinet has an answer to this:

 

Create a Management VDOM; enable VDOMs ( if you haven't done that already):

 

- Create a VDOM called Management ( or whatever you like) ; your existing firewall config will remain on root automatically

- Create an inter-VDOM routing link to direct traffic from the Management VDOM to the root VDOM and out on to the internet

- Enable NAT to your IP pools on that inter-VDOM link

- Assign the Management VDOM the ‘management’ role

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



×
×
  • Create New...