Skip to main content
duraz
New Member
March 8, 2016
Question

DMZ

  • March 8, 2016
  • 1 reply
  • 3154 views

Hello,

I try to set up DMZ with the help of our Fortigate machine. I have done all steps in this recipe http://cookbook.fortinet.com/protect-a-web-server-with-dmz/, but nothing works. DMZ interface is up and enabled, but I can't get to a computer behind it.

 

I can't even see statistics for dmz interface in Policy&Objects - Monitor - Policy Monitor.

 

Our Fortigate unit is 200D, firmware version 5.2.5

 

 

I can describe what I have done so far. First I set up DMZ interface (attachement - section DMZ interface). Than I set up virtual IPs - http and https (section Virtual IP). Finally I  configured two ipv4 policies (LAN policy, WAN policy).

 

What else shall I do?

 

Thanks

 

    1 reply

    Toshi_Esumi
    SuperUser
    SuperUser
    March 8, 2016

    As long as three components 1) routes, 2) policy, and 3) VIPs from outside access are there, it should work. I would allow all-ping on the policies and test from inside interface first. If that works, then sniff&check 1-to-3 when you ping from outside.