Assign external IP's from IPS subnet to dedicated interfaces and assign VLAN's to ports
- March 22, 2016
- 3 replies
- 9801 views
Hi all,
I'm complete new to Fortigate
. I've searched the topics to see if someone already has given a solution for the problem I'm encountering, but didn't find it. I've a Fortigate 60D, and upgraded the OS to 5.4.
Today I received a public subnet from my ISP with 16 IP addresses (from which I can use 14). These IP addresses 212.115.xxx.xxx /28 will be routed by our ISP to one external IP adres: 217.63.xx.xx. I've configured the WAN1 port with this IP address: 217.63.xx.xx. The internet connection is ok. When I connect a PC to Int 1, I have internet, and the IP address is also pingable from the outside.
I've deleted port 2 t/m 7 from the Hardware Switch (only port 1 remains as member of the switch).
Now I would like to configure the FGT as follow:
212.115.xxx.xx1 = Port 1 = VLAN 1 = connected to HP switch (on this VLAN 1 I have servers, switches, printers etc.)
212.115.xxx.xx2 = Port 2 = VLAN 2 = connected to HP switch (on this VLAN 2 I have some DECT transmitters for telephony)
212.115.xxx.xx3 = Port 3 = VLAN 3 = connected to HP switch (on this VLAN 3 I have a Guest Wifi network)
212.115.xxx.xx4 = Port 4 = VLAN 4 = connected to HP switch (on this VLAN 4 I have the internal LAN clients)
Could this be done?
Or should I use port 2 - 5 for the VLAN's and port 1 for management?
The config as how I have it now is:

I tried to setup int2 as WAN port to submit the external IP directly, and created VLAN_DECT (VLAN2) as part of this Int2.
I tried to setup int3 as WAN port (instead of applying a ext. IP address, I tried to get the IP address from DHCP (but the DHCP server isn't active jet, so the IP address = 0.0.0.0
How should I config the interfaces (and after that, how do I have to config a NAT route) in such way they will go to the internet (thru the WAN1 port) with their own external IP adress?
I hope you'll understand what I'm trying to do, and someone can help me....
Thanks in advance.
Leander van Gorsel
