Failing to Reach Public Fortiguard Servers
Hi,
We use Fortimanager (FM) to administer several Fortigates (FG). Under Central-Management in the CLI, we set the fmg-source-ip to the FG's Loopback address. We have configured a server-list entry pointing to FM, which acts as an "internal" Fortiguard server. Lastly, we left the public Fortiguard servers enabled as a fallback.
An issue occurs when a FG tries to use the public servers. The packet leaving on the WAN interface has its source address set to the private Loopback address. I can’t find a way to specify using NAT for this local-out traffic on the WAN interface.
Does anyone have any suggestions?
Thank you for your time.
Larry
