Technical Tip: Inter-VLAN communication by zone
| Description | This article describes how to configure Inter-VLAN communication by creating a Zone. |
| Scope | FortiGate. |
| Solution | In the following example, Inter-VLAN communication is required when devices in different VLANs must talk to each other for a valid business or technical reason.
Create the VLANs (in case there are no previous VLANs created): From the GUI, go to Network -> Interface and select Create New -> Interface. In this scenario, VLAN test1 has with IP address of 10.10.2.5/32 and VLAN test2 has with IP 192.168.6.2/32.
Create the VLAN zone: From the GUI, go to Create New -> Zone. Add the zone members previously created in step 1, or add them by selecting the '+' symbol, and create the VLANs on the same menu:
Previously created VLANs:
Creating a VLAN on the same menu:
Once the Inter-VLAN zone is created, VLAN members should be listed:
Test connectivity: Source a ping request from one of the VLAN IP's:
Execute the following command to verify the traffic flow:
diagnose sniffer packet any 'host (<source-ip> and <destination-ip>) and icmp' 4 0 l |




