Skip to main content
sims
Explorer II
June 2, 2022
Solved

dmz zone

  • June 2, 2022
  • 1 reply
  • 1499 views

Hi,

I am running vrf on the lan (inside zone) switch . 

I don't have separate physical switch for dmz. So i am planning  to run the dmz on the same insdie switch .

In firewall we create a vdom for  dmz ,In that case how many physical link I need from the lan switch to the fortigate firewall .

Do I need separate link for dmz vdom ,Or  I can use the same link for the root vdom ?

If I can use the same link what configuration requires on fortigate side and switch side 

Thanks

Best answer by jintrah_FTNT

Hi,

You can use the same link or different link for dmz vdom. If using the same link, you would be creating vlans on the FortiGate interface that would become part of dmz vdom, the switch side port would be a trunk port in this case.

 

Best regards,

Jin

1 reply

jintrah_FTNT
Staff
Staff
June 2, 2022

Hi,

You can use the same link or different link for dmz vdom. If using the same link, you would be creating vlans on the FortiGate interface that would become part of dmz vdom, the switch side port would be a trunk port in this case.

 

Best regards,

Jin