DMZ with multiple public IP address ranges
I'm VERY new to Fortinet and am attempting to migrate from an ASA that's managed by a 3rd party to our own FG 201F. I've got most of it configured, but struggling with how to setup my DMZ. Current ASA has 3 DMZ's, each setup with their own public IP ranges on their own VLANs. The DMZ's are then assigned to 1 physical port on the ASA.
Now...I want to setup my DMZ and assign private IP's to the hosts and then map/NAT/virtual ip/whatever to the public IP's. My question is...how do I setup the interfaces so I have multiple public IP's? Do I create multiple DMZ interfaces? Do I assign multiple IP's to the WAN interface?
For example...current DMZA has public IP range of 10.10.0.0/29. ASA has an interface in that range and it's assigned to a VLAN. All hosts on that VLAN are also assigned public IPs in that range.
DMZB has public IP range of 10.20.0.0/29. ASA and hosts assigned to that range and VLAN.
