Skip to main content
ThatDudeFromNZ
New Member
May 5, 2021
Question

Double routers with FortiGate on the LAN.

  • May 5, 2021
  • 3 replies
  • 3885 views

Have a new new client and found they have a Fritzbox managing some analog phones and not willing to move so planning on putting FOrtiGate inside to manage LAN and leaving Fritzbox on the WAN but unsure of setup. 

 

WAN --> FritzBOX --> FortiGate -- > LAN

 

Would I assign the connection between FritzBOX and FortiGate their separate subnet then create a policy to send LAN traffic out this interface or would further config be required?

FritzBOX LAN1: 192.168.1.1

FortiGate LAN1: 192.168.1.2

 

Fortigate LAN2-6: LAN 192.168.10.0/24

 

Policy:

Incoming interface: LAN2-6

Outgoing interface: LAN1

all all etc

 

Would this work? appreciate any help

 

 

 

    3 replies

    countryman
    New Member
    May 7, 2021

    I'm watching this with interest as I have a similar situation.

    sw2090
    SuperUser
    SuperUser
    May 11, 2021

    The Interface your Fritz!Box is connectrd to is acting as you rWAN for internet then right?

    I have one site here that has a Fritz!Box as one WAN too. So Fritz!Box is connected to one of the WAN ports (but you could use any other port too) and I put it into sd-wan as I need some loadblancing to happen.

    Then there is just policies to allow traffic to flow that I need to be able to reach the Fritz!Box (like I need to access to Froitz fro HQ via S2S IPsec on the FGT) and it is fine.

    Just for inside services (like I had to to for ipsec) you then might have to do some port forwarding on the Frtz...

     

    countryman
    New Member
    May 14, 2021

    Does the Fortgate have to be ethernet cabled to the Fritz router or can one do this using wi-fi and a Fritz repeater ?  Reason for asking is that I tried the latter and it failed to do any connnection from the Fortigate back to the router.